suse-su-2024:1490-1
Vulnerability from csaf_suse
Published
2024-05-03 07:54
Modified
2024-05-03 07:54
Summary
Security update for the Linux Kernel
Notes
Title of the patch
Security update for the Linux Kernel
Description of the patch
The SUSE Linux Enterprise 15 SP5 Azure kernel was updated to receive various security bugfixes.
The following security bugs were fixed:
- CVE-2021-46925: Fixed kernel panic caused by race of smc_sock (bsc#1220466).
- CVE-2021-46926: Fixed bug when detecting controllers in ALSA/hda/intel-sdw-acpi (bsc#1220478).
- CVE-2021-46927: Fixed assertion bug in nitro_enclaves: Use get_user_pages_unlocked() (bsc#1220443).
- CVE-2021-46929: Fixed use-after-free issue in sctp_sock_dump() (bsc#1220482).
- CVE-2021-46930: Fixed usb/mtu3 list_head check warning (bsc#1220484).
- CVE-2021-46931: Fixed wrong type casting in mlx5e_tx_reporter_dump_sq() (bsc#1220486).
- CVE-2021-46933: Fixed possible underflow in ffs_data_clear() (bsc#1220487).
- CVE-2021-46936: Fixed use-after-free in tw_timer_handler() (bsc#1220439).
- CVE-2021-47082: Fixed ouble free in tun_free_netdev() (bsc#1220969).
- CVE-2021-47087: Fixed incorrect page free bug in tee/optee (bsc#1220954).
- CVE-2021-47091: Fixed locking in ieee80211_start_ap()) error path (bsc#1220959).
- CVE-2021-47093: Fixed memleak on registration failure in intel_pmc_core (bsc#1220978).
- CVE-2021-47094: Fixed possible memory leak in KVM x86/mmu (bsc#1221551).
- CVE-2021-47095: Fixed missing initialization in ipmi/ssif (bsc#1220979).
- CVE-2021-47096: Fixed uninitalized user_pversion in ALSA rawmidi (bsc#1220981).
- CVE-2021-47097: Fixed stack out of bound access in elantech_change_report_id() (bsc#1220982).
- CVE-2021-47098: Fixed integer overflow/underflow in hysteresis calculations hwmon: (lm90) (bsc#1220983).
- CVE-2021-47099: Fixed BUG_ON assertion in veth when skb entering GRO are cloned (bsc#1220955).
- CVE-2021-47100: Fixed UAF when uninstall in ipmi (bsc#1220985).
- CVE-2021-47101: Fixed uninit-value in asix_mdio_read() (bsc#1220987).
- CVE-2021-47102: Fixed incorrect structure access In line: upper = info->upper_dev in net/marvell/prestera (bsc#1221009).
- CVE-2021-47104: Fixed memory leak in qib_user_sdma_queue_pkts() (bsc#1220960).
- CVE-2021-47105: Fixed potential memory leak in ice/xsk (bsc#1220961).
- CVE-2021-47107: Fixed READDIR buffer overflow in NFSD (bsc#1220965).
- CVE-2021-47108: Fixed possible NULL pointer dereference for mtk_hdmi_conf in drm/mediatek (bsc#1220986).
- CVE-2021-47181: Fixed a null pointer dereference caused by calling platform_get_resource() (bsc#1222660).
- CVE-2021-47182: Fixed buffer length handling in scsi_mode_sense() in scsi core (bsc#1222662).
- CVE-2021-47183: Fixed a null pointer dereference during link down processing in scsi lpfc (bsc#1192145, bsc#1222664).
- CVE-2021-47185: Fixed a softlockup issue in flush_to_ldisc in tty tty_buffer (bsc#1222669).
- CVE-2021-47189: Fixed denial of service due to memory ordering issues between normal and ordered work functions in btrfs (bsc#1222706).
- CVE-2022-4744: Fixed double-free that could lead to DoS or privilege escalation in TUN/TAP device driver functionality (bsc#1209635).
- CVE-2022-48626: Fixed a potential use-after-free on remove path moxart (bsc#1220366).
- CVE-2022-48629: Fixed possible memory leak in qcom-rng (bsc#1220989).
- CVE-2022-48630: Fixed infinite loop on requests not multiple of WORD_SZ in crypto: qcom-rng (bsc#1220990).
- CVE-2023-0160: Fixed deadlock flaw in BPF that could allow a local user to potentially crash the system (bsc#1209657).
- CVE-2023-28746: Fixed Register File Data Sampling (bsc#1213456).
- CVE-2023-35827: Fixed a use-after-free issue in ravb_tx_timeout_work() (bsc#1212514).
- CVE-2023-4881: Fixed a out-of-bounds write flaw in the netfilter subsystem that could lead to potential information disclosure or a denial of service (bsc#1215221).
- CVE-2023-52447: Fixed map_fd_put_ptr() signature kABI workaround (bsc#1220251).
- CVE-2023-52450: Fixed NULL pointer dereference issue in upi_fill_topology() (bsc#1220237).
- CVE-2023-52453: Fixed data corruption in hisi_acc_vfio_pci (bsc#1220337).
- CVE-2023-52454: Fixed a kernel panic when host sends an invalid H2C PDU length (bsc#1220320).
- CVE-2023-52469: Fixed a use-after-free in kv_parse_power_table (bsc#1220411).
- CVE-2023-52470: Fixed null-ptr-deref in radeon_crtc_init() (bsc#1220413).
- CVE-2023-52474: Fixed a vulnerability with non-PAGE_SIZE-end multi-iovec user SDMA requests (bsc#1220445).
- CVE-2023-52476: Fixed possible unhandled page fault via perf sampling NMI during vsyscall (bsc#1220703).
- CVE-2023-52477: Fixed USB Hub accesses to uninitialized BOS descriptors (bsc#1220790).
- CVE-2023-52481: Fixed speculative unprivileged load in Cortex-A520 (bsc#1220887).
- CVE-2023-52484: Fixed a soft lockup triggered by arm_smmu_mm_invalidate_range (bsc#1220797).
- CVE-2023-52486: Fixed possible use-after-free in drm (bsc#1221277).
- CVE-2023-52488: Fixed data corruption due to error on incrementing register address in regmap functions for FIFO in serial sc16is7xx (bsc#1221162).
- CVE-2023-52492: Fixed a null-pointer-dereference in channel unregistration function __dma_async_device_channel_register() (bsc#1221276).
- CVE-2023-52493: Fixed possible soft lockup in bus/mhi/host (bsc#1221274).
- CVE-2023-52494: Fixed missing alignment check for event ring read pointer in bus/mhi/host (bsc#1221273).
- CVE-2023-52497: Fixed data corruption in erofs (bsc#1220879).
- CVE-2023-52500: Fixed information leaking when processing OPC_INB_SET_CONTROLLER_CONFIG command (bsc#1220883).
- CVE-2023-52501: Fixed possible memory corruption in ring-buffer (bsc#1220885).
- CVE-2023-52502: Fixed a race condition in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() (bsc#1220831).
- CVE-2023-52503: Fixed use-after-free in amdtee_close_session due to race condition with amdtee_open_session in tee amdtee (bsc#1220915).
- CVE-2023-52504: Fixed possible out-of bounds in apply_alternatives() on a 5-level paging machine (bsc#1221553).
- CVE-2023-52507: Fixed possible shift-out-of-bounds in nfc/nci (bsc#1220833).
- CVE-2023-52508: Fixed null pointer dereference in nvme_fc_io_getuuid() (bsc#1221015).
- CVE-2023-52509: Fixed a use-after-free issue in ravb_tx_timeout_work() (bsc#1220836).
- CVE-2023-52510: Fixed a potential UAF in ca8210_probe() (bsc#1220898).
- CVE-2023-52511: Fixed possible memory corruption in spi/sun6i (bsc#1221012).
- CVE-2023-52513: Fixed connection failure handling in RDMA/siw (bsc#1221022).
- CVE-2023-52515: Fixed possible use-after-free in RDMA/srp (bsc#1221048).
- CVE-2023-52517: Fixed race between DMA RX transfer completion and RX FIFO drain in spi/sun6i (bsc#1221055).
- CVE-2023-52518: Fixed information leak in bluetooth/hci_codec (bsc#1221056).
- CVE-2023-52519: Fixed possible overflow in HID/intel-ish-hid/ipc (bsc#1220920).
- CVE-2023-52520: Fixed reference leak in platform/x86/think-lmi (bsc#1220921).
- CVE-2023-52523: Fixed wrong redirects to non-TCP sockets in bpf (bsc#1220926).
- CVE-2023-52524: Fixed possible corruption in nfc/llcp (bsc#1220927).
- CVE-2023-52525: Fixed out of bounds check mwifiex_process_rx_packet() (bsc#1220840).
- CVE-2023-52528: Fixed uninit-value access in __smsc75xx_read_reg() (bsc#1220843).
- CVE-2023-52529: Fixed a potential memory leak in sony_probe() (bsc#1220929).
- CVE-2023-52532: Fixed a bug in TX CQE error handling (bsc#1220932).
- CVE-2023-52561: Fixed denial of service due to missing reserved attribute on cont splash memory region in arm64 dts qcom sdm845-db845c (bsc#1220935).
- CVE-2023-52563: Fixed memory leak on ->hpd_notify callback() in drm/meson (bsc#1220937).
- CVE-2023-52564: Reverted invalid fix for UAF in gsm_cleanup_mux() (bsc#1220938).
- CVE-2023-52566: Fixed potential use after free in nilfs_gccache_submit_read_data() (bsc#1220940).
- CVE-2023-52567: Fixed possible Oops in serial/8250_port: when using IRQ polling (irq = 0) (bsc#1220839).
- CVE-2023-52569: Fixed a bug in btrfs by remoning BUG() after failure to insert delayed dir index item (bsc#1220918).
- CVE-2023-52574: Fixed a bug by hiding new member header_ops (bsc#1220870).
- CVE-2023-52575: Fixed SBPB enablement for spec_rstack_overflow=off (bsc#1220871).
- CVE-2023-52576: Fixed potential use after free in memblock_isolate_range() (bsc#1220872).
- CVE-2023-52582: Fixed possible oops in netfs (bsc#1220878).
- CVE-2023-52583: Fixed deadlock or deadcode of misusing dget() inside ceph (bsc#1221058).
- CVE-2023-52587: Fixed mcast list locking in IB/ipoib (bsc#1221082).
- CVE-2023-52591: Fixed a possible reiserfs filesystem corruption via directory renaming (bsc#1221044).
- CVE-2023-52594: Fixed potential array-index-out-of-bounds read in ath9k_htc_txstatus() (bsc#1221045).
- CVE-2023-52595: Fixed possible deadlock in wifi/rt2x00 (bsc#1221046).
- CVE-2023-52597: Fixed a setting of fpc register in KVM (bsc#1221040).
- CVE-2023-52598: Fixed wrong setting of fpc register in s390/ptrace (bsc#1221060).
- CVE-2023-52599: Fixed array-index-out-of-bounds in diNewExt() in jfs (bsc#1221062).
- CVE-2023-52600: Fixed uaf in jfs_evict_inode() (bsc#1221071).
- CVE-2023-52601: Fixed array-index-out-of-bounds in dbAdjTree() in jfs (bsc#1221068).
- CVE-2023-52602: Fixed slab-out-of-bounds Read in dtSearch() in jfs (bsc#1221070).
- CVE-2023-52603: Fixed array-index-out-of-bounds in dtSplitRoot() (bsc#1221066).
- CVE-2023-52604: Fixed array-index-out-of-bounds in dbAdjTree() (bsc#1221067).
- CVE-2023-52605: Fixed a NULL pointer dereference check (bsc#1221039)
- CVE-2023-52606: Fixed possible kernel stack corruption in powerpc/lib (bsc#1221069).
- CVE-2023-52607: Fixed a null-pointer-dereference in pgtable_cache_add kasprintf() (bsc#1221061).
- CVE-2023-52608: Fixed possible race condition in firmware/arm_scmi (bsc#1221375).
- CVE-2023-52612: Fixed req->dst buffer overflow in crypto/scomp (bsc#1221616).
- CVE-2023-52615: Fixed page fault dead lock on mmap-ed hwrng (bsc#1221614).
- CVE-2023-52617: Fixed stdev_release() crash after surprise hot remove (bsc#1221613).
- CVE-2023-52619: Fixed possible crash when setting number of cpus to an odd number in pstore/ram (bsc#1221618).
- CVE-2023-52621: Fixed missing asserion in bpf (bsc#1222073).
- CVE-2023-52623: Fixed suspicious RCU usage in SUNRPC (bsc#1222060).
- CVE-2023-52627: Fixed null pointer dereference due to lack of callback functions in iio adc ad7091r (bsc#1222051)
- CVE-2023-52628: Fixed 4-byte stack OOB write in nftables (bsc#1222117).
- CVE-2023-52632: Fixed lock dependency warning with srcu in drm/amdkfd (bsc#1222274).
- CVE-2023-52636: Fixed denial of service due to wrongly init the cursor when preparing sparse read in msgr2 in libceph (bsc#1222247).
- CVE-2023-52637: Fixed UAF in j1939_sk_match_filter() in can/k1939 (bsc#1222291).
- CVE-2023-52639: Fixed race during shadow creation in KVM/s390/vsie Fixed (bsc#1222300).
- CVE-2023-6356: Fixed a NULL pointer dereference in nvmet_tcp_build_pdu_iovec (bsc#1217987).
- CVE-2023-6535: Fixed a NULL pointer dereference in nvmet_tcp_execute_request (bsc#1217988).
- CVE-2023-6536: Fixed a NULL pointer dereference in __nvmet_req_complete (bsc#1217989).
- CVE-2023-7042: Fixed a null-pointer-dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() (bsc#1218336).
- CVE-2023-7192: Fixed a memory leak problem in ctnetlink_create_conntrack in net/netfilter/nf_conntrack_netlink.c (bsc#1218479).
- CVE-2024-0841: Fixed null pointer dereference in hugetlbfs_fill_super() (bsc#1219264).
- CVE-2024-2201: Fixed information leak in x86/BHI (bsc#1217339).
- CVE-2024-22099: Fixed a null-pointer-dereference in rfcomm_check_security (bsc#1219170).
- CVE-2024-23307: Fixed Integer Overflow or Wraparound vulnerability in x86 and ARM md, raid, raid5 modules (bsc#1219169).
- CVE-2024-23850: Fixed denial of service due to assertion failure due to subvolume readed before root item insertion in btrfs_get_root_ref in btrfs (bsc#1219126).
- CVE-2024-23850: Fixed double free of anonymous device after snapshot creation failure (bsc#1219126).
- CVE-2024-25739: Fixed possible crash in create_empty_lvol() in drivers/mtd/ubi/vtbl.c (bsc#1219834).
- CVE-2024-25742: Fixed insufficient validation during #VC instruction emulation in x86/sev (bsc#1221725).
- CVE-2024-26599: Fixed out-of-bounds access in of_pwm_single_xlate() (bsc#1220365).
- CVE-2024-26600: Fixed NULL pointer dereference for SRP in phy-omap-usb2 (bsc#1220340).
- CVE-2024-26602: Fixed overall slowdowns with sys_membarrier (bsc1220398).
- CVE-2024-26612: Fixed Oops in fscache_put_cache() This function dereferences (bsc#1221291).
- CVE-2024-26614: Fixed the initialization of accept_queue's spinlocks (bsc#1221293).
- CVE-2024-26620: Fixed possible device model violation in s390/vfio-ap (bsc#1221298).
- CVE-2024-26627: Fixed possible hard lockup in scsi (bsc#1221090).
- CVE-2024-26629: Fixed possible protocol violation via RELEASE_LOCKOWNER in nfsd (bsc#1221379).
- CVE-2024-26642: Fixed the set of anonymous timeout flag in netfilter nf_tables (bsc#1221830).
- CVE-2024-26645: Fixed missing visibility when inserting an element into tracing_map (bsc#1222056).
- CVE-2024-26646: Fixed potential memory corruption when resuming from suspend or hibernation in thermal/intel/hfi (bsc#1222070).
- CVE-2024-26651: Fixed possible oops via malicious devices in sr9800 (bsc#1221337).
- CVE-2024-26654: Fixed use after free in ALSA/sh/aica (bsc#1222304).
- CVE-2024-26659: Fixed wrong handling of isoc Babble and Buffer Overrun events in xhci (bsc#1222317).
- CVE-2024-26660: Fixed buffer overflow in dcn301_stream_encoder_create in drm amd display (bsc#1222266)
- CVE-2024-26664: Fixed out-of-bounds memory access in create_core_data() in hwmon coretemp (bsc#1222355).
- CVE-2024-26667: Fixed null pointer reference in dpu_encoder_helper_phys_cleanup in drm/msm/dpu (bsc#1222331).
- CVE-2024-26670: Fixed ARM64_WORKAROUND_SPECULATIVE_UNPRIV_LOAD workaround in kernel arm64 (bsc#1222356).
- CVE-2024-26680: Fixed denial of service due to DMA mapping for PTP hwts ring in net atlantic (bsc#1222427).
- CVE-2024-26681: Fixed denial of service in nsim_dev_trap_report_work() in netdevsim (bsc#1222431).
- CVE-2024-26684: Fixed handling of DPP safety error for DMA channels in net stmmac xgmac (bsc#1222445).
- CVE-2024-26685: Fixed denial of service in end_buffer_async_write() in nilfs2 (bsc#1222437).
- CVE-2024-26689: Fixed use-after-free in encode_cap_msg() in ceph (bsc#1222503).
- CVE-2024-26695: Fixed null pointer dereference in __sev_platform_shutdown_locked in crypto ccp (bsc#1222373).
- CVE-2024-26696: Fixed denial of service in nilfs_lookup_dirty_data_buffers() in nilfs2 (bsc#1222549).
- CVE-2024-26697: Fixed data corruption in dsync block recovery for small block sizes in nilfs2 (bsc#1222550).
- CVE-2024-26704: Fixed a double-free of blocks due to wrong extents moved_len in ext4 (bsc#1222422).
- CVE-2024-26717: Fixed null pointer dereference on failed power up in HID i2c-hid-of (bsc#1222360).
- CVE-2024-26718: Fixed memory corruption in tasklet_unlock via disabling tasklets in dm-crypt and dm-verify (bsc#1222416).
- CVE-2024-26722: Fixed denial of service in rt5645_jack_detect_work() due to mutex left locked forever in ASoC rt5645 (bsc#1222520).
- CVE-2024-26727: Fixed denial of service due to assertion failure during subvolume creation (bsc#1222536).
- CVE-2024-26733: Fixed an overflow in arp_req_get() in arp (bsc#1222585).
- CVE-2024-26736: Fixed buffer overflow in afs_update_volume_status() in afs (bsc#1222586).
- CVE-2024-26737: Fixed use-after-free due to race between bpf_timer_cancel_and_free and bpf_timer_cancel in bpf (bsc#1222557).
- CVE-2024-26743: Fixed memory leak in qedr_create_user_qp error flow in rdma/qedr (bsc#1222677)
- CVE-2024-26744: Fixed null pointer dereference in srpt_service_guid parameter in rdma/srpt (bsc#1222449)
- CVE-2024-26745: Fixed null pointer dereference due to IOMMU table not initialized for kdump over SR-IOV (bsc#1220492, bsc#1222678).
- CVE-2024-26747: Fixed null pointer issue when put module's reference in usb roles (bsc#1222609).
- CVE-2024-26749: Fixed use-after-free at cdns3_gadget_ep_disable() in usb cdns3 (bsc#1222680).
- CVE-2024-26751: Fixed denial of service due to gpiod_lookup_table search loop not ending correctly (bsc#1222724)
- CVE-2024-26754: Fixed an use-after-free and null-ptr-deref in gtp_genl_dump_pdp() in gtp (bsc#1222632).
- CVE-2024-26760: Fixed null pointer dereference on error case in bio_put() in scsi target pscsi (bsc#1222596)
- CVE-2024-26763: Fixed user corruption via by writing data with O_DIRECT on device in dm-crypt (bsc#1222720).
- CVE-2024-26766: Fixed off-by-one error in sdma.h tx->num_descs in ib/hfi1 (bsc#1222726)
- CVE-2024-26769: Fixed deadlock on delete association path in nvmet-fc (bsc#1222727).
- CVE-2024-26771: Fixed a null pointer dereference on edma_probe in dmaengine ti edma (bsc#1222610)
- CVE-2024-26776: Fixed null pointer dereference due to null value returned by interrupt handler in spi hisi-sfc-v3xx (bsc#1222764)
- CVE-2024-26779: Fixed denial of service due to race condition on enabling fast-xmit in wifi mac80211 (bsc#1222772).
- CVE-2024-26787: Fixed DMA API overlapping mappings in mmc mmci stm32 (bsc#1222781)
- CVE-2024-26790: Fixed denial of service on 16 bytes unaligned read in dmaengine fsl-qdma (bsc#1222784)
- CVE-2024-26793: Fixed an use-after-free and null-ptr-deref in gtp_newlink() in gtp (bsc#1222428).
- CVE-2024-26798: Fixed denial of service due to wrongly restore fond data upon failure in fbcon (bsc#1222798).
- CVE-2024-26805: Fixed a kernel-infoleak-after-free in __skb_datagram_iter in netlink (bsc#1222630).
- CVE-2024-26807: Fixed memory corruption due to wrong pointer reference in spi cadence-qspi (bsc#1222801)
- CVE-2024-26848: Fixed denial of service due to endless loop in directory parsing in afs (bsc#1223030).
The following non-security bugs were fixed:
- Revert 'PCI: tegra194: Enable support for 256 Byte payload' (git-fixes).
- Revert 'Revert 'drm/amdgpu/display: change pipe policy for DCN 2.0'' (git-fixes).
- Revert 'SUNRPC dont update timeout value on connection reset' (git-fixes).
- Revert 'drm/amd: Disable PSR-SU on Parade 0803 TCON' (git-fixes).
- Revert 'drm/amd: Disable S/G for APUs when 64GB or more host memory' (git-fixes).
- Revert 'drm/amdgpu/display: change pipe policy for DCN 2.0' (git-fixes).
- Revert 'drm/amdgpu/display: change pipe policy for DCN 2.1' (git-fixes).
- Revert 'drm/vc4: hdmi: Enforce the minimum rate at runtime_resume' (git-fixes).
- Revert 'fbdev: flush deferred IO before closing (git-fixes).' (bsc#1221814)
- acpi: CPPC: enable AMD CPPC V2 support for family 17h processors (git-fixes).
- acpi: processor_idle: Fix memory leak in acpi_processor_power_exit() (git-fixes).
- acpi: resource: Add Infinity laptops to irq1_edge_low_force_override (stable-fixes).
- acpi: resource: Add MAIBENBEN X577 to irq1_edge_low_force_override (git-fixes).
- acpi: resource: Do IRQ override on Lunnen Ground laptops (stable-fixes).
- acpi: scan: Fix device check notification handling (git-fixes).
- acpica: debugger: check status of acpi_evaluate_object() in acpi_db_walk_for_fields() (git-fixes).
- alsa: aaci: Delete unused variable in aaci_do_suspend (git-fixes).
- alsa: aoa: avoid false-positive format truncation warning (git-fixes).
- alsa: aw2: avoid casting function pointers (git-fixes).
- alsa: ctxfi: avoid casting function pointers (git-fixes).
- alsa: hda/realtek - ALC285 reduce pop noise from Headphone port (stable-fixes).
- alsa: hda/realtek - Add Headset Mic supported Acer NB platform (stable-fixes).
- alsa: hda/realtek - Fix headset Mic no show at resume back for Lenovo ALC897 platform (git-fixes).
- alsa: hda/realtek: Enable Mute LED on HP 840 G8 (MB 8AB8) (git-fixes).
- alsa: hda/realtek: Update Panasonic CF-SZ6 quirk to support headset with microphone (git-fixes).
- alsa: hda/realtek: fix ALC285 issues on HP Envy x360 laptops (stable-fixes).
- alsa: hda/realtek: fix mute/micmute LED For HP mt440 (git-fixes).
- alsa: hda/realtek: fix mute/micmute LEDs for HP EliteBook (stable-fixes).
- alsa: seq: fix function cast warnings (git-fixes).
- alsa: sh: aica: reorder cleanup operations to avoid UAF bugs (git-fixes).
- alsa: usb-audio: Stop parsing channels bits when all channels are found (git-fixes).
- arm64: dts: allwinner: h6: Add RX DMA channel for SPDIF (git-fixes)
- arm64: dts: broadcom: bcmbca: bcm4908: drop invalid switch cells (git-fixes)
- arm64: dts: imx8mm-kontron: Add support for ultra high speed modes on (git-fixes)
- arm64: dts: imx8mm-venice-gw71xx: fix USB OTG VBUS (git-fixes)
- arm64: dts: marvell: reorder crypto interrupts on Armada SoCs (git-fixes)
- arm64: dts: rockchip: add ES8316 codec for ROCK Pi 4 (git-fixes)
- arm64: dts: rockchip: add SPDIF node for ROCK Pi 4 (git-fixes)
- arm64: dts: rockchip: fix regulator name on rk3399-rock-4 (git-fixes)
- arm64: dts: rockchip: set num-cs property for spi on px30 (git-fixes)
- arm64: mm: fix VA-range sanity check (git-fixes)
- arm64: set __exception_irq_entry with __irq_entry as a default (git-fixes)
- asoc: Intel: bytcr_rt5640: Add an extra entry for the Chuwi Vi8 tablet (stable-fixes).
- asoc: amd: acp: Add missing error handling in sof-mach (git-fixes).
- asoc: amd: acp: fix for acp_init function error handling (git-fixes).
- asoc: madera: Fix typo in madera_set_fll_clks shift value (git-fixes).
- asoc: meson: Use dev_err_probe() helper (stable-fixes).
- asoc: meson: aiu: fix function pointer type mismatch (git-fixes).
- asoc: meson: axg-tdm-interface: add frame rate constraint (git-fixes).
- asoc: meson: axg-tdm-interface: fix mclk setup without mclk-fs (git-fixes).
- asoc: meson: t9015: fix function pointer type mismatch (git-fixes).
- asoc: ops: Fix wraparound for mask in snd_soc_get_volsw (git-fixes).
- asoc: rcar: adg: correct TIMSEL setting for SSI9 (git-fixes).
- asoc: rt5645: Make LattePanda board DMI match more precise (stable-fixes).
- asoc: rt5682-sdw: fix locking sequence (git-fixes).
- asoc: rt711-sdca: fix locking sequence (git-fixes).
- asoc: rt711-sdw: fix locking sequence (git-fixes).
- asoc: wm8962: Enable both SPKOUTR_ENA and SPKOUTL_ENA in mono mode (stable-fixes).
- asoc: wm8962: Enable oscillator if selecting WM8962_FLL_OSC (stable-fixes).
- asoc: wm8962: Fix up incorrect error message in wm8962_set_fll (stable-fixes).
- ata: sata_mv: Fix PCI device ID table declaration compilation warning (git-fixes).
- ata: sata_sx4: fix pdc20621_get_from_dimm() on 64-bit (git-fixes).
- backlight: da9052: Fully initialize backlight_properties during probe (git-fixes).
- backlight: lm3630a: Do not set bl->props.brightness in get_brightness (git-fixes).
- backlight: lm3630a: Initialize backlight_properties on init (git-fixes).
- backlight: lm3639: Fully initialize backlight_properties during probe (git-fixes).
- backlight: lp8788: Fully initialize backlight_properties during probe (git-fixes).
- bcache: Fix __bch_btree_node_alloc to make the failure behavior consistent (git-fixes).
- bcache: Remove dead references to cache_readaheads (git-fixes).
- bcache: Remove unnecessary NULL point check in node allocations (git-fixes).
- bcache: add code comments for bch_btree_node_get() and __bch_btree_node_alloc() (git-fixes).
- bcache: avoid NULL checking to c->root in run_cache_set() (git-fixes).
- bcache: avoid oversize memory allocation by small stripe_size (git-fixes).
- bcache: bset: Fix comment typos (git-fixes).
- bcache: check return value from btree_node_alloc_replacement() (git-fixes).
- bcache: fix NULL pointer reference in cached_dev_detach_finish (git-fixes).
- bcache: fix error info in register_bcache() (git-fixes).
- bcache: fixup bcache_dev_sectors_dirty_add() multithreaded CPU false sharing (git-fixes).
- bcache: fixup btree_cache_wait list damage (git-fixes).
- bcache: fixup init dirty data errors (git-fixes).
- bcache: fixup lock c->root error (git-fixes).
- bcache: fixup multi-threaded bch_sectors_dirty_init() wake-up race (git-fixes).
- bcache: move calc_cached_dev_sectors to proper place on backing device detach (git-fixes).
- bcache: move uapi header bcache.h to bcache code directory (git-fixes).
- bcache: prevent potential division by zero error (git-fixes).
- bcache: remove EXPERIMENTAL for Kconfig option 'Asynchronous device registration' (git-fixes).
- bcache: remove bch_crc64_update (git-fixes).
- bcache: remove redundant assignment to variable cur_idx (git-fixes).
- bcache: remove the backing_dev_name field from struct cached_dev (git-fixes).
- bcache: remove the cache_dev_name field from struct cache (git-fixes).
- bcache: remove unnecessary flush_workqueue (git-fixes).
- bcache: remove unused bch_mark_cache_readahead function def in stats.h (git-fixes).
- bcache: replace a mistaken IS_ERR() by IS_ERR_OR_NULL() in btree_gc_coalesce() (git-fixes).
- bcache: replace snprintf in show functions with sysfs_emit (git-fixes).
- bcache: revert replacing IS_ERR_OR_NULL with IS_ERR (git-fixes).
- bcache: use bvec_kmap_local in bch_data_verify (git-fixes).
- bcache: use bvec_kmap_local in bio_csum (git-fixes).
- bcache: use default_groups in kobj_type (git-fixes).
- bcache:: fix repeated words in comments (git-fixes).
- blocklayoutdriver: Fix reference leak of pnfs_device_node (git-fixes).
- bluetooth: hci_core: Fix possible buffer overflow (git-fixes).
- bluetooth: mgmt: Remove leftover queuing of power_off work (git-fixes).
- bluetooth: remove HCI_POWER_OFF_TIMEOUT (git-fixes).
- bluetooth: remove superfluous call to hci_conn_check_pending() (git-fixes).
- bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security (stable-fixes).
- bpf, scripts: Correct GPL license name (git-fixes).
- bpf, sockmap: Fix preempt_rt splat when using raw_spin_lock_t (git-fixes).
- can: softing: remove redundant NULL check (git-fixes).
- ceph: stop copying to iter at EOF on sync reads (bsc#1223068).
- ceph: switch to corrected encoding of max_xattr_size in mdsmap (bsc#1223067).
- clk: zynq: Prevent null pointer dereference caused by kmalloc failure (git-fixes).
- comedi: comedi_test: Prevent timers rescheduling during deletion (git-fixes).
- coresight: etm4x: Do not access TRCIDR1 for identification (bsc#1220775)
- coresight: etm4x: Fix accesses to TRCSEQRSTEVR and TRCSEQSTR (bsc#1220775)
- coresight: etm: Override TRCIDR3.CCITMIN on errata affected cpus (bsc#1220775)
- cpufreq: amd-pstate: Fix min_perf assignment in amd_pstate_adjust_perf() (git-fixes).
- cpufreq: brcmstb-avs-cpufreq: add check for cpufreq_cpu_get's return value (git-fixes).
- crypto: arm/sha - fix function cast warnings (git-fixes).
- crypto: qat - avoid division by zero (git-fixes).
- crypto: qat - fix deadlock in backlog processing (git-fixes).
- crypto: qat - fix double free during reset (git-fixes).
- crypto: qat - fix state machines cleanup paths (bsc#1218321).
- crypto: qat - fix unregistration of compression algorithms (git-fixes).
- crypto: qat - fix unregistration of crypto algorithms (git-fixes).
- crypto: qat - ignore subsequent state up commands (git-fixes).
- crypto: qat - increase size of buffers (git-fixes).
- crypto: qat - resolve race condition during AER recovery (git-fixes).
- crypto: xilinx - call finalize with bh disabled (git-fixes).
- dm cache policy smq: ensure IO does not prevent cleaner policy progress (git-fixes).
- dm cache: add cond_resched() to various workqueue loops (git-fixes).
- dm clone: call kmem_cache_destroy() in dm_clone_init() error path (git-fixes).
- dm crypt: add cond_resched() to dmcrypt_write() (git-fixes).
- dm crypt: avoid accessing uninitialized tasklet (git-fixes).
- dm flakey: do not corrupt the zero page (git-fixes).
- dm flakey: fix a bug with 32-bit highmem systems (git-fixes).
- dm flakey: fix a crash with invalid table line (git-fixes).
- dm flakey: fix logic when corrupting a bio (git-fixes).
- dm init: add dm-mod.waitfor to wait for asynchronously probed block devices (git-fixes).
- dm integrity: call kmem_cache_destroy() in dm_integrity_init() error path (git-fixes).
- dm integrity: fix out-of-range warning (git-fixes).
- dm integrity: reduce vmalloc space footprint on 32-bit architectures (git-fixes).
- dm raid: clean up four equivalent goto tags in raid_ctr() (git-fixes).
- dm raid: fix false positive for requeue needed during reshape (git-fixes).
- dm raid: fix missing reconfig_mutex unlock in raid_ctr() error paths (git-fixes).
- dm stats: check for and propagate alloc_percpu failure (git-fixes).
- dm thin metadata: Fix ABBA deadlock by resetting dm_bufio_client (git-fixes).
- dm thin metadata: check fail_io before using data_sm (git-fixes).
- dm thin: add cond_resched() to various workqueue loops (git-fixes).
- dm thin: fix deadlock when swapping to thin device (bsc#1177529).
- dm verity: do not perform FEC for failed readahead IO (git-fixes).
- dm verity: fix error handling for check_at_most_once on FEC (git-fixes).
- dm zoned: free dmz->ddev array in dmz_put_zoned_devices (git-fixes).
- dm-delay: fix a race between delay_presuspend and delay_bio (git-fixes).
- dm-integrity: do not modify bio's immutable bio_vec in integrity_metadata() (git-fixes).
- dm-raid: fix lockdep waring in 'pers->hot_add_disk' (git-fixes).
- dm-verity, dm-crypt: align 'struct bvec_iter' correctly (git-fixes).
- dm-verity: align struct dm_verity_fec_io properly (git-fixes).
- dm: add cond_resched() to dm_wq_work() (git-fixes).
- dm: call the resume method on internal suspend (git-fixes).
- dm: do not lock fs when the map is NULL during suspend or resume (git-fixes).
- dm: do not lock fs when the map is NULL in process of resume (git-fixes).
- dm: remove flush_scheduled_work() during local_exit() (git-fixes).
- dm: send just one event on resize, not two (git-fixes).
- doc-guide: kernel-doc: tell about object-like macros (git-fixes).
- doc/README.SUSE: Update information about module support status (jsc#PED-5759)
- drivers: hv: vmbus: Calculate ring buffer size for more efficient use of memory (git-fixes).
- drm/amd/display: Add FAMS validation before trying to use it (git-fixes).
- drm/amd/display: Add function for validate and update new stream (git-fixes).
- drm/amd/display: Avoid ABM when ODM combine is enabled for eDP (git-fixes).
- drm/amd/display: Blocking invalid 420 modes on HDMI TMDS for DCN31 (git-fixes).
- drm/amd/display: Check if link state is valid (git-fixes).
- drm/amd/display: Copy DC context in the commit streams (git-fixes).
- drm/amd/display: Disable PSR-SU on Parade 0803 TCON again (git-fixes).
- drm/amd/display: Enable fast plane updates on DCN3.2 and above (git-fixes).
- drm/amd/display: Enable new commit sequence only for DCN32x (git-fixes).
- drm/amd/display: Exit idle optimizations before attempt to access PHY (git-fixes).
- drm/amd/display: Expand kernel doc for DC (git-fixes).
- drm/amd/display: Fix a bug when searching for insert_above_mpcc (git-fixes).
- drm/amd/display: Fix a potential buffer overflow in 'dp_dsc_clock_en_read()' (git-fixes).
- drm/amd/display: Fix possible underflow for displays with large vblank (git-fixes).
- drm/amd/display: Fix the delta clamping for shaper LUT (git-fixes).
- drm/amd/display: Fix underflow issue on 175hz timing (git-fixes).
- drm/amd/display: For prefetch mode > 0, extend prefetch if possible (git-fixes).
- drm/amd/display: Guard DCN31 PHYD32CLK logic against chip family (git-fixes).
- drm/amd/display: Guard against invalid RPTR/WPTR being set (git-fixes).
- drm/amd/display: Handle seamless boot stream (git-fixes).
- drm/amd/display: Handle virtual hardware detect (git-fixes).
- drm/amd/display: Include surface of unaffected streams (git-fixes).
- drm/amd/display: Include udelay when waiting for INBOX0 ACK (git-fixes).
- drm/amd/display: Increase frame warning limit with KASAN or KCSAN in dml (git-fixes).
- drm/amd/display: Keep PHY active for dp config (git-fixes).
- drm/amd/display: Prevent vtotal from being set to 0 (git-fixes).
- drm/amd/display: Remove min_dst_y_next_start check for Z8 (git-fixes).
- drm/amd/display: Restore rptr/wptr for DMCUB as workaround (git-fixes).
- drm/amd/display: Return the correct HDCP error code (stable-fixes).
- drm/amd/display: Revert vblank change that causes null pointer crash (git-fixes).
- drm/amd/display: Rework comments on dc file (git-fixes).
- drm/amd/display: Rework context change check (git-fixes).
- drm/amd/display: Set minimum requirement for using PSR-SU on Phoenix (git-fixes).
- drm/amd/display: Set minimum requirement for using PSR-SU on Rembrandt (git-fixes).
- drm/amd/display: Update OTG instance in the commit stream (git-fixes).
- drm/amd/display: Update correct DCN314 register header (git-fixes).
- drm/amd/display: Update min Z8 residency time to 2100 for DCN314 (git-fixes).
- drm/amd/display: Use DRAM speed from validation for dummy p-state (git-fixes).
- drm/amd/display: Use DTBCLK as refclk instead of DPREFCLK (git-fixes).
- drm/amd/display: Use min transition for all SubVP plane add/remove (git-fixes).
- drm/amd/display: Write to correct dirty_rect (git-fixes).
- drm/amd/display: Wrong colorimetry workaround (git-fixes).
- drm/amd/display: add FB_DAMAGE_CLIPS support (git-fixes).
- drm/amd/display: add ODM case when looking for first split pipe (git-fixes).
- drm/amd/display: always switch off ODM before committing more streams (git-fixes).
- drm/amd/display: clean code-style issues in dcn30_set_mpc_shaper_3dlut (git-fixes).
- drm/amd/display: dc.h: eliminate kernel-doc warnings (git-fixes).
- drm/amd/display: ensure async flips are only accepted for fast updates (git-fixes).
- drm/amd/display: fix ABM disablement (git-fixes).
- drm/amd/display: fix a NULL pointer dereference in amdgpu_dm_i2c_xfer() (git-fixes).
- drm/amd/display: fix dc/core/dc.c kernel-doc (git-fixes).
- drm/amd/display: fix hw rotated modes when PSR-SU is enabled (git-fixes).
- drm/amd/display: fix kernel-doc issues in dc.h (git-fixes).
- drm/amd/display: fix unbounded requesting for high pixel rate modes on dcn315 (git-fixes).
- drm/amd/display: handle range offsets in VRR ranges (stable-fixes).
- drm/amd/display: perform a bounds check before filling dirty rectangles (git-fixes).
- drm/amd/display: set per pipe dppclk to 0 when dpp is off (git-fixes).
- drm/amd/display: update extended blank for dcn314 onwards (git-fixes).
- drm/amd/display: use low clocks for no plane configs (git-fixes).
- drm/amd/pm: Fix error of MACO flag setting code (git-fixes).
- drm/amd/pm: fix a memleak in aldebaran_tables_init (git-fixes).
- drm/amd/smu: use AverageGfxclkFrequency* to replace previous GFX Curr Clock (git-fixes).
- drm/amd: Enable PCIe PME from D3 (git-fixes).
- drm/amdgpu/pm: Fix the error of pwm1_enable setting (stable-fixes).
- drm/amdgpu/pm: make gfxclock consistent for sienna cichlid (git-fixes).
- drm/amdgpu/pm: make mclk consistent for smu 13.0.7 (git-fixes).
- drm/amdgpu/smu13: drop compute workload workaround (git-fixes).
- drm/amdgpu: Enable gpu reset for S3 abort cases on Raven series (stable-fixes).
- drm/amdgpu: Fix missing break in ATOM_ARG_IMM Case of atom_get_src_int() (git-fixes).
- drm/amdgpu: Force order between a read and write to the same address (git-fixes).
- drm/amdgpu: Match against exact bootloader status (git-fixes).
- drm/amdgpu: Unset context priority is now invalid (git-fixes).
- drm/amdgpu: Update min() to min_t() in 'amdgpu_info_ioctl' (git-fixes).
- drm/amdgpu: amdgpu_ttm_gart_bind set gtt bound flag (stable-fixes).
- drm/amdgpu: lower CS errors to debug severity (git-fixes).
- drm/amdkfd: fix TLB flush after unmap for GFX9.4.2 (stable-fixes).
- drm/bridge: tc358762: Instruct DSI host to generate HSE packets (git-fixes).
- drm/display: fix typo (git-fixes).
- drm/edid: Add quirk for OSVR HDK 2.0 (git-fixes).
- drm/etnaviv: Restore some id values (git-fixes).
- drm/exynos: do not return negative values from .get_modes() (stable-fixes).
- drm/exynos: fix a possible null-pointer dereference due to data race in exynos_drm_crtc_atomic_disable() (git-fixes).
- drm/i915/bios: Tolerate devdata==NULL in intel_bios_encoder_supports_dp_dual_mode() (stable-fixes).
- drm/i915/gt: Do not generate the command streamer for all the CCS (git-fixes).
- drm/i915/gt: Reset queue_priority_hint on parking (git-fixes).
- drm/i915/gt: Use i915_vm_put on ppgtt_create error paths (git-fixes).
- drm/i915/selftests: Fix dependency of some timeouts on HZ (git-fixes).
- drm/i915: Add missing CCS documentation (git-fixes).
- drm/i915: Call intel_pre_plane_updates() also for pipes getting enabled (git-fixes).
- drm/i915: Check before removing mm notifier (git-fixes).
- drm/lima: fix a memleak in lima_heap_alloc (git-fixes).
- drm/mediatek: Fix a null pointer crash in mtk_drm_crtc_finish_page_flip (git-fixes).
- drm/mediatek: dsi: Fix DSI RGB666 formats and definitions (git-fixes).
- drm/msm/dpu: Only enable DSC_MODE_MULTIPLEX if dsc_merge is enabled (git-fixes).
- drm/msm/dpu: add division of drm_display_mode's hskew parameter (git-fixes).
- drm/msm/dpu: fix the programming of INTF_CFG2_DATA_HCTL_EN (git-fixes).
- drm/msm/dpu: improve DSC allocation (git-fixes).
- drm/panel-edp: use put_sync in unprepare (git-fixes).
- drm/panel: Move AUX B116XW03 out of panel-edp back to panel-simple (git-fixes).
- drm/panel: auo,b101uan08.3: Fine tune the panel power sequence (git-fixes).
- drm/panel: boe-tv101wum-nl6: Fine tune the panel power sequence (git-fixes).
- drm/panel: do not return negative error codes from drm_panel_get_modes() (stable-fixes).
- drm/panfrost: fix power transition timeout warnings (git-fixes).
- drm/probe-helper: warn about negative .get_modes() (stable-fixes).
- drm/qxl: remove unused `count` variable from `qxl_surface_id_alloc()` (git-fixes).
- drm/qxl: remove unused variable from `qxl_process_single_command()` (git-fixes).
- drm/radeon/ni: Fix wrong firmware size logging in ni_init_microcode() (git-fixes).
- drm/radeon/ni_dpm: remove redundant NULL check (git-fixes).
- drm/radeon: remove dead code in ni_mc_load_microcode() (git-fixes).
- drm/rockchip: dsi: Clean up 'usage_mode' when failing to attach (git-fixes).
- drm/rockchip: inno_hdmi: Fix video timing (git-fixes).
- drm/rockchip: lvds: do not overwrite error code (git-fixes).
- drm/rockchip: lvds: do not print scary message when probing defer (git-fixes).
- drm/tegra: dpaux: Fix PM disable depth imbalance in tegra_dpaux_probe (git-fixes).
- drm/tegra: dsi: Add missing check for of_find_device_by_node (git-fixes).
- drm/tegra: dsi: Fix missing pm_runtime_disable() in the error handling path of tegra_dsi_probe() (git-fixes).
- drm/tegra: dsi: Fix some error handling paths in tegra_dsi_probe() (git-fixes).
- drm/tegra: dsi: Make use of the helper function dev_err_probe() (stable-fixes).
- drm/tegra: hdmi: Convert to devm_platform_ioremap_resource() (stable-fixes).
- drm/tegra: hdmi: Fix some error handling paths in tegra_hdmi_probe() (git-fixes).
- drm/tegra: output: Fix missing i2c_put_adapter() in the error handling paths of tegra_output_probe() (git-fixes).
- drm/tegra: put drm_gem_object ref on error in tegra_fb_create (git-fixes).
- drm/tegra: rgb: Fix missing clk_put() in the error handling paths of tegra_dc_rgb_probe() (git-fixes).
- drm/tegra: rgb: Fix some error handling paths in tegra_dc_rgb_probe() (git-fixes).
- drm/tidss: Fix initial plane zpos values (git-fixes).
- drm/tidss: Fix sync-lost issue with two displays (git-fixes).
- drm/ttm: Do not leak a resource on eviction error (git-fixes).
- drm/ttm: Do not print error message if eviction was interrupted (git-fixes).
- drm/vc4: Add module dependency on hdmi-codec (git-fixes).
- drm/vmwgfx: Create debugfs ttm_resource_manager entry only if needed (git-fixes).
- drm/vmwgfx: Fix possible null pointer derefence with invalid contexts (git-fixes).
- drm/vmwgfx: fix a memleak in vmw_gmrid_man_get_node (git-fixes).
- drm: Do not treat 0 as -1 in drm_fixp2int_ceil (git-fixes).
- drm: Fix drm_fixp2int_round() making it add 0.5 (git-fixes).
- drm: panel-orientation-quirks: Add quirk for Acer Switch V 10 (SW5-017) (git-fixes).
- firewire: core: use long bus reset on gap count error (stable-fixes).
- fix 'coresight: etm4x: Change etm4_platform_driver driver for MMIO devices' (bsc#1220775) Hunk with clk_put(drvdata->pclk) was incorrectly moved to another function.
- force config_TCG_TIS_CORE=m on aarch64 for workaround kconfig issues
- group-source-files.pl: Quote filenames (boo#1221077). The kernel source now contains a file with a space in the name. Add quotes in group-source-files.pl to avoid splitting the filename. Also use -print0 / -0 when updating timestamps.
- hid: amd_sfh: Update HPD sensor structure elements (git-fixes).
- hid: lenovo: Add middleclick_workaround sysfs knob for cptkbd (git-fixes).
- hid: multitouch: Add required quirk for Synaptics 0xcddc device (stable-fixes).
- hv_netvsc: Calculate correct ring size when PAGE_SIZE is not 4 Kbytes (git-fixes).
- hv_netvsc: Fix race condition between netvsc_probe and netvsc_remove (git-fixes).
- hv_netvsc: Register VF in netvsc_probe if NET_DEVICE_REGISTER missed (git-fixes).
- i2c: aspeed: Fix the dummy irq expected print (git-fixes).
- i2c: i801: Avoid potential double call to gpiod_remove_lookup_table (git-fixes).
- i2c: wmt: Fix an error handling path in wmt_i2c_probe() (git-fixes).
- ib/ipoib: fix mcast list locking (git-fixes)
- iio: dummy_evgen: remove Excess kernel-doc comments (git-fixes).
- iio: pressure: dlhl60d: Initialize empty DLH bytes (git-fixes).
- input: gpio_keys_polled - suppress deferred probe error for gpio (stable-fixes).
- input: synaptics-rmi4 - fix UAF of IRQ domain on driver removal (git-fixes).
- iommu/amd: Add a length limitation for the ivrs_acpihid command-line parameter (git-fixes).
- iommu/amd: Do not block updates to GATag if guest mode is on (git-fixes).
- iommu/amd: Fix 'Guest Virtual APIC Table Root Pointer' configuration in IRTE (git-fixes).
- iommu/amd: Fix domain flush size when syncing iotlb (git-fixes).
- iommu/amd: Fix error handling for pdev_pri_ats_enable() (git-fixes).
- iommu/amd: Mark interrupt as managed (git-fixes).
- iommu/arm-smmu-qcom: Limit the SMR groups to 128 (git-fixes).
- iommu/arm-smmu-v3: Acknowledge pri/event queue overflow if any (git-fixes).
- iommu/arm-smmu-v3: Work around MMU-600 erratum 1076982 (git-fixes).
- iommu/dma: Trace bounce buffer usage when mapping buffers (git-fixes).
- iommu/fsl: fix all kernel-doc warnings in fsl_pamu.c (git-fixes).
- iommu/iova: Fix alloc iova overflows issue (git-fixes).
- iommu/mediatek-v1: Fix an error handling path in mtk_iommu_v1_probe() (git-fixes).
- iommu/mediatek: Fix forever loop in error handling (git-fixes).
- iommu/mediatek: Flush IOTLB completely only if domain has been attached (git-fixes).
- iommu/rockchip: Fix unwind goto issue (git-fixes).
- iommu/sprd: Release dma buffer to avoid memory leak (git-fixes).
- iommu/vt-d: Allocate local memory for page request queue (git-fixes).
- iommu/vt-d: Allow to use flush-queue when first level is default (git-fixes).
- iommu/vt-d: Allow zero SAGAW if second-stage not supported (git-fixes).
- iommu/vt-d: Do not issue ATS Invalidation request when device is disconnected (git-fixes).
- iommu/vt-d: Fix PASID directory pointer coherency (git-fixes).
- iommu/vt-d: Fix error handling in sva enable/disable paths (git-fixes).
- iommu/vt-d: Set No Execute Enable bit in PASID table entry (git-fixes).
- iommu: Fix error unwind in iommu_group_alloc() (git-fixes).
- kABI: PCI: Add locking to RMW PCI Express Capability Register accessors (kabi).
- kabi: Adjust trace_iterator.wait_index (git-fixes).
- kconfig: fix infinite loop when expanding a macro at the end of file (git-fixes).
- kernel-binary: Fix i386 build Fixes: 89eaf4cdce05 ('rpm templates: Move macro definitions below buildrequires')
- kernel-binary: Move build script to the end All other spec templates have the build script at the end, only kernel-binary has it in the middle. Align with the other templates.
- kernel-binary: certs: Avoid trailing space
- kernel-binary: vdso: fix filelist for non-usrmerged kernel Fixes: a6ad8af207e6 ('rpm templates: Always define usrmerged')
- kprobes: Fix double free of kretprobe_holder (bsc#1220901).
- kvm: s390: only deliver the set service event bits (git-fixes bsc#1221631).
- leds: aw2013: Unlock mutex before destroying it (git-fixes).
- lib/cmdline: Fix an invalid format specifier in an assertion msg (git-fixes).
- libnvdimm/of_pmem: Use devm_kstrdup instead of kstrdup and check its return value (git-fixes).
- libnvdimm/region: Allow setting align attribute on regions without mappings (git-fixes).
- make nvidia Grace-Hopper TPM related drivers build-ins (bsc#1221156)
- md/raid1: fix choose next idle in read_balance() (git-fixes).
- md: Do not clear MD_CLOSING when the raid is about to stop (git-fixes).
- md: do not clear MD_RECOVERY_FROZEN for new dm-raid until resume (git-fixes).
- md: fix data corruption for raid456 when reshape restart while grow up (git-fixes).
- media: dvb-frontends: avoid stack overflow warnings with clang (git-fixes).
- media: edia: dvbdev: fix a use-after-free (git-fixes).
- media: em28xx: annotate unchecked call to media_device_register() (git-fixes).
- media: go7007: add check of return value of go7007_read_addr() (git-fixes).
- media: go7007: fix a memleak in go7007_load_encoder (git-fixes).
- media: imx: csc/scaler: fix v4l2_ctrl_handler memory leak (git-fixes).
- media: pvrusb2: fix pvr2_stream_callback casts (git-fixes).
- media: pvrusb2: fix uaf in pvr2_context_set_notify (git-fixes).
- media: pvrusb2: remove redundant NULL check (git-fixes).
- media: staging: ipu3-imgu: Set fields before media_entity_pads_init() (git-fixes).
- media: sun8i-di: Fix chroma difference threshold (git-fixes).
- media: sun8i-di: Fix coefficient writes (git-fixes).
- media: sun8i-di: Fix power on/off sequences (git-fixes).
- media: tc358743: register v4l2 async device only after successful setup (git-fixes).
- media: ttpci: fix two memleaks in budget_av_attach (git-fixes).
- media: usbtv: Remove useless locks in usbtv_video_free() (git-fixes).
- media: v4l2-mem2mem: fix a memleak in v4l2_m2m_register_entity (git-fixes).
- media: v4l2-tpg: fix some memleaks in tpg_alloc (git-fixes).
- media: xc4000: Fix atomicity violation in xc4000_get_frequency (git-fixes).
- mfd: altera-sysmgr: Call of_node_put() only when of_parse_phandle() takes a ref (git-fixes).
- mfd: syscon: Call of_node_put() only when of_parse_phandle() takes a ref (git-fixes).
- mm,page_owner: Defer enablement of static branch (bsc#1222366).
- mm,page_owner: Fix accounting of pages when migrating (bsc#1222366).
- mm,page_owner: Fix printing of stack records (bsc#1222366).
- mm,page_owner: Fix refcount imbalance (bsc#1222366).
- mm,page_owner: Update metadata for tail pages (bsc#1222366).
- mm,page_owner: check for null stack_record before bumping its refcount (bsc#1222366).
- mm,page_owner: drop unnecessary check (bsc#1222366).
- mm,page_owner: fix recursion (bsc#1222366).
- mm/vmalloc: huge vmalloc backing pages should be split rather than compound (bsc#1217829).
- mmc: core: Avoid negative index with array access (git-fixes).
- mmc: core: Fix switch on gp3 partition (git-fixes).
- mmc: core: Initialize mmc_blk_ioc_data (git-fixes).
- mmc: mmci: stm32: fix DMA API overlapping mappings warning (git-fixes).
- mmc: mmci: stm32: use a buffer for unaligned DMA requests (git-fixes).
- mmc: tmio: avoid concurrent runs of mmc_request_done() (git-fixes).
- mmc: wmt-sdmmc: remove an incorrect release_mem_region() call in the .remove function (git-fixes).
- mtd: maps: physmap-core: fix flash size larger than 32-bit (git-fixes).
- mtd: rawnand: lpc32xx_mlc: fix irq handler prototype (git-fixes).
- mtd: rawnand: meson: fix scrambling mode value in command macro (git-fixes).
- nd_btt: Make BTT lanes preemptible (git-fixes).
- net/bnx2x: Prevent access to a freed page in page_pool (bsc#1215322).
- net/x25: fix incorrect parameter validation in the x25_getsockopt() function (git-fixes).
- net: Fix features skip in for_each_netdev_feature() (git-fixes).
- net: lan78xx: fix runtime PM count underflow on link stop (git-fixes).
- net: ll_temac: platform_get_resource replaced by wrong function (git-fixes).
- net: mana: Fix Rx DMA datasize and skb_over_panic (git-fixes).
- net: phy: fix phy_get_internal_delay accessing an empty array (git-fixes).
- net: sunrpc: Fix an off by one in rpc_sockaddr2uaddr() (git-fixes).
- net: usb: ax88179_178a: avoid the interface always configured as random address (git-fixes).
- nfc: nci: Fix uninit-value in nci_dev_up and nci_ntf_packet (git-fixes).
- nfs: avoid spurious warning of lost lock that is being unlocked (bsc#1221791).
- nfs: fix an off by one in root_nfs_cat() (git-fixes).
- nfs: rename nfs_client_kset to nfs_kset (git-fixes).
- nfsd: change LISTXATTRS cookie encoding to big-endian (git-fixes).
- nfsd: convert the callback workqueue to use delayed_work (git-fixes).
- nfsd: do not take fi_lock in nfsd_break_deleg_cb() (git-fixes).
- nfsd: fix file memleak on client_opens_release (git-fixes).
- nfsd: fix liSTXATTRS returning a short list with eof=TRUE (git-fixes).
- nfsd: fix liSTXATTRS returning more bytes than maxcount (git-fixes).
- nfsd: fix nfsd4_listxattr_validate_cookie (git-fixes).
- nfsd: lock_rename() needs both directories to live on the same fs (git-fixes).
- nfsd: reschedule CB operations when backchannel rpc_clnt is shut down (git-fixes).
- nfsd: reset cb_seq_status after NFS4ERR_DELAY (git-fixes).
- nfsd: retransmit callbacks after client reconnects (git-fixes).
- nfsd: use vfs setgid helper (git-fixes).
- nfsv4.1/pnfs: Ensure we handle the error NFS4ERR_RETURNCONFLICT (git-fixes).
- nfsv4.1: fix SP4_MACH_CRED protection for pnfs IO (git-fixes).
- nfsv4.1: fixup use EXCHGID4_FLAG_USE_PNFS_DS for DS server (git-fixes).
- nfsv4.1: use EXCHGID4_FLAG_USE_PNFS_DS for DS server (git-fixes).
- nfsv4.2: fix listxattr maximum XDR buffer size (git-fixes).
- nfsv4.2: fix nfs4_listxattr kernel BUG at mm/usercopy.c:102 (git-fixes).
- nfsv4.2: fix wrong shrinker_id (git-fixes).
- nfsv4: fix a nfs4_state_manager() race (git-fixes).
- nfsv4: fix a state manager thread deadlock regression (git-fixes).
- nilfs2: fix failure to detect DAT corruption in btree and direct mappings (git-fixes).
- nilfs2: prevent kernel bug at submit_bh_wbc() (git-fixes).
- nouveau/dmem: handle kcalloc() allocation failure (git-fixes).
- nouveau: reset the bo resource bus info after an eviction (git-fixes).
- ntfs: fix use-after-free in ntfs_ucsncmp() (bsc#1221713).
- nvdimm/namespace: drop nested variable in create_namespace_pmem() (git-fixes).
- nvdimm: Allow overwrite in the presence of disabled dimms (git-fixes).
- nvdimm: Fix badblocks clear off-by-one error (git-fixes).
- nvdimm: Fix dereference after free in register_nvdimm_pmu() (git-fixes).
- nvdimm: Fix firmware activation deadlock scenarios (git-fixes).
- nvdimm: Fix memleak of pmu attr_groups in unregister_nvdimm_pmu() (git-fixes).
- nvme-fc: do not wait in vain when unloading module (git-fixes).
- nvme: fix reconnection fail due to reserved tag allocation (git-fixes).
- nvmet-fc: abort command when there is no binding (git-fixes).
- nvmet-fc: avoid deadlock on delete association path (git-fixes).
- nvmet-fc: defer cleanup using RCU properly (git-fixes).
- nvmet-fc: hold reference on hostport match (git-fixes).
- nvmet-fc: release reference on target port (git-fixes).
- nvmet-fc: take ref count on tgtport before delete assoc (git-fixes).
- nvmet-fcloop: swap the list_add_tail arguments (git-fixes).
- nvmet-tcp: fix nvme tcp ida memory leak (git-fixes).
- pNFS/flexfiles: Check the layout validity in ff_layout_mirror_prepare_stats (git-fixes).
- pNFS: Fix a hang in nfs4_evict_inode() (git-fixes).
- pNFS: Fix the pnfs block driver's calculation of layoutget size (git-fixes).
- pci/aer: Block runtime suspend when handling errors (git-fixes).
- pci/aer: fix rootport attribute paths in ABI docs (git-fixes).
- pci/aspm: use RMW accessors for changing LNKCTL (git-fixes).
- pci/dpc: Quirk PIO log size for Intel Ice Lake Root Ports (git-fixes).
- pci/dpc: Quirk PIO log size for Intel Raptor Lake Root Ports (git-fixes).
- pci/dpc: Quirk PIO log size for certain Intel Root Ports (git-fixes).
- pci/dpc: print all TLP Prefixes, not just the first (git-fixes).
- pci/msi: prevent MSI hardware interrupt number truncation (bsc#1218777)
- pci/p2pdma: Fix a sleeping issue in a RCU read section (git-fixes).
- pci/pm: Drain runtime-idle callbacks before driver removal (git-fixes).
- pci: Drop pci_device_remove() test of pci_dev->driver (git-fixes).
- pci: add locking to RMW PCI Express Capability Register accessors (git-fixes).
- pci: dwc: endpoint: Fix advertised resizable BAR size (git-fixes).
- pci: dwc: endpoint: Fix dw_pcie_ep_raise_msix_irq() alignment support (git-fixes).
- pci: dwc: fix a 64bit bug in dw_pcie_ep_raise_msix_irq() (git-fixes).
- pci: fu740: Set the number of MSI vectors (git-fixes).
- pci: lengthen reset delay for VideoPropulsion Torrent QN16e card (git-fixes).
- pci: make link retraining use RMW accessors for changing LNKCTL (git-fixes).
- pci: mark 3ware-9650SE Root Port Extended Tags as broken (git-fixes).
- pci: mediatek-gen3: Fix translation window size calculation (git-fixes).
- pci: mediatek: Clear interrupt status before dispatching handler (git-fixes).
- pci: qcom: enable BDF to SID translation properly (git-fixes).
- pci: qcom: use DWC helpers for modifying the read-only DBI registers (git-fixes).
- pci: rockchip: Do not advertise MSI-X in PCIe capabilities (git-fixes).
- pci: rockchip: Fix window mapping and address translation for endpoint (git-fixes).
- pci: rockchip: Use 64-bit mask on MSI 64-bit PCI address (git-fixes).
- pci: switchtec: Fix an error handling path in switchtec_pci_probe() (git-fixes).
- pci_iounmap(): Fix MMIO mapping leak (git-fixes).
- pinctrl: mediatek: Drop bogus slew rate register range for MT8192 (git-fixes).
- platform/mellanox: mlxreg-hotplug: Remove redundant NULL-check (git-fixes).
- pm: suspend: Set mem_sleep_current during kernel command line setup (git-fixes).
- powerpc/64s: POWER10 CPU Kconfig build option (bsc#1194869).
- powerpc/boot: Disable power10 features after BOOTAFLAGS assignment (bsc#1194869).
- powerpc/boot: Fix boot wrapper code generation with CONFIG_POWER10_CPU (bsc#1194869).
- powerpc/lib/sstep: Do not use __{get/put}_user() on kernel addresses (bsc#1194869).
- powerpc/lib/sstep: Remove unneeded #ifdef __powerpc64__ (bsc#1194869).
- powerpc/lib/sstep: Use l1_dcache_bytes() instead of opencoding (bsc#1194869).
- powerpc/lib/sstep: use truncate_if_32bit() (bsc#1194869).
- powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV (bsc#1220492 ltc#205270).
- powerpc/pseries/iommu: LPAR panics when rebooted with a frozen PE (bsc#1222011 ltc#205900).
- powerpc/pseries: Fix potential memleak in papr_get_attr() (bsc#1200465 ltc#197256 jsc#SLE-18130 git-fixes).
- powerpc/sstep: Use bitwise instead of arithmetic operator for flags (bsc#1194869).
- powerpc: add compile-time support for lbarx, lharx (bsc#1194869).
- pwm: mediatek: Update kernel doc for struct pwm_mediatek_of_data (git-fixes).
- qedf: Do not process stag work during unload (bsc#1214852).
- qedf: Wait for stag work during unload (bsc#1214852).
- raid1: fix use-after-free for original bio in raid1_write_request() (bsc#1221097).
- ras/amd/fmpm: Add debugfs interface to print record entries (jsc#PED-7619).
- ras/amd/fmpm: Avoid NULL ptr deref in get_saved_records() (jsc#PED-7619).
- ras/amd/fmpm: Fix build when debugfs is not enabled (jsc#PED-7619).
- ras/amd/fmpm: Fix off by one when unwinding on error (jsc#PED-7619).
- ras/amd/fmpm: Safely handle saved records of various sizes (jsc#PED-7619).
- ras/amd/fmpm: Save SPA values (jsc#PED-7619).
- ras: Avoid build errors when CONFIG_DEBUG_FS=n (git-fixes).
- ras: Avoid build errors when CONFIG_DEBUG_FS=n (jsc#PED-7619).
- ras: export helper to get ras_debugfs_dir (jsc#PED-7619).
- rdma/cm: add timeout to cm_destroy_id wait (git-fixes)
- rdma/device: Fix a race between mad_client and cm_client init (git-fixes)
- rdma/hns: fix mis-modifying default congestion control algorithm (git-fixes)
- rdma/ipoib: Fix error code return in ipoib_mcast_join (git-fixes)
- rdma/irdma: Remove duplicate assignment (git-fixes)
- rdma/mana_ib: Fix bug in creation of dma regions (git-fixes).
- rdma/mlx5: fix fortify source warning while accessing Eth segment (git-fixes)
- rdma/mlx5: relax DEVX access upon modify commands (git-fixes)
- rdma/rtrs-clt: Check strnlen return len in sysfs mpath_policy_store() (git-fixes)
- rdma/srpt: do not register event handler until srpt device is fully setup (git-fixes)
- ring-buffer: Do not set shortest_full when full target is hit (git-fixes).
- ring-buffer: Fix full_waiters_pending in poll (git-fixes).
- ring-buffer: Fix resetting of shortest_full (git-fixes).
- ring-buffer: Fix waking up ring buffer readers (git-fixes).
- ring-buffer: Make wake once of ring_buffer_wait() more robust (git-fixes).
- ring-buffer: Use wait_event_interruptible() in ring_buffer_wait() (git-fixes).
- rtc: mt6397: select IRQ_DOMAIN instead of depending on it (git-fixes).
- s390/pai: fix attr_event_free upper limit for pai device drivers (git-fixes bsc#1221633).
- s390/vfio-ap: realize the VFIO_DEVICE_GET_IRQ_INFO ioctl (bsc#1205316).
- s390/vfio-ap: realize the VFIO_DEVICE_SET_IRQS ioctl (bsc#1205316).
- s390/vfio-ap: wire in the vfio_device_ops request callback (bsc#1205316).
- s390/vtime: fix average steal time calculation (git-fixes bsc#1221951).
- sched/rt: Disallow writing invalid values to sched_rt_period_us (bsc#1220176).
- sched/rt: sysctl_sched_rr_timeslice show default timeslice after reset (bsc#1220176).
- scsi: lpfc: Copyright updates for 14.4.0.1 patches (bsc#1221777).
- scsi: lpfc: Correct size for cmdwqe/rspwqe for memset() (bsc#1221777).
- scsi: lpfc: Correct size for wqe for memset() (bsc#1221777).
- scsi: lpfc: Define lpfc_dmabuf type for ctx_buf ptr (bsc#1221777).
- scsi: lpfc: Define lpfc_nodelist type for ctx_ndlp ptr (bsc#1221777).
- scsi: lpfc: Define types in a union for generic void *context3 ptr (bsc#1221777).
- scsi: lpfc: Move NPIV's transport unregistration to after resource clean up (bsc#1221777).
- scsi: lpfc: Release hbalock before calling lpfc_worker_wake_up() (bsc#1221777).
- scsi: lpfc: Remove IRQF_ONESHOT flag from threaded IRQ handling (bsc#1221777 bsc#1217959).
- scsi: lpfc: Remove unnecessary log message in queuecommand path (bsc#1221777).
- scsi: lpfc: Replace hbalock with ndlp lock in lpfc_nvme_unregister_port() (bsc#1221777).
- scsi: lpfc: Update lpfc version to 14.4.0.1 (bsc#1221777).
- scsi: lpfc: Update lpfc_ramp_down_queue_handler() logic (bsc#1221777).
- scsi: lpfc: Use a dedicated lock for ras_fwlog state (bsc#1221777).
- scsi: qedf: Remove set but unused variable 'page' (bsc#1214852).
- scsi: qedf: Remove unused 'num_handled' variable (bsc#1214852).
- scsi: qedf: Remove unused declaration (bsc#1214852).
- scsi: qla2xxx: Change debug message during driver unload (bsc1221816).
- scsi: qla2xxx: Delay I/O Abort on PCI error (bsc1221816).
- scsi: qla2xxx: Fix N2N stuck connection (bsc1221816).
- scsi: qla2xxx: Fix command flush on cable pull (bsc1221816).
- scsi: qla2xxx: Fix double free of fcport (bsc1221816).
- scsi: qla2xxx: Fix double free of the ha->vp_map pointer (bsc1221816).
- scsi: qla2xxx: NVME|FCP prefer flag not being honored (bsc1221816).
- scsi: qla2xxx: Prevent command send on chip reset (bsc1221816).
- scsi: qla2xxx: Split FCE|EFT trace control (bsc1221816).
- scsi: qla2xxx: Update manufacturer detail (bsc1221816).
- scsi: qla2xxx: Update version to 10.02.09.200-k (bsc1221816).
- scsi: storvsc: Fix ring buffer size calculation (git-fixes).
- scsi: target: core: Silence the message about unknown VPD pages (bsc#1221252).
- selftests/bpf: add generic BPF program tester-loader (bsc#1222033).
- serial: 8250_exar: Do not remove GPIO device on suspend (git-fixes).
- serial: max310x: fix syntax error in IRQ error message (git-fixes).
- slimbus: core: Remove usage of the deprecated ida_simple_xx() API (git-fixes).
- soc: fsl: qbman: Always disable interrupts when taking cgr_lock (git-fixes).
- spi: lm70llp: fix links in doc and comments (git-fixes).
- spi: spi-mt65xx: Fix NULL pointer access in interrupt handler (git-fixes).
- sr9800: Add check for usbnet_get_endpoints (git-fixes).
- stackdepot: rename pool_index to pool_index_plus_1 (git-fixes).
- staging: vc04_services: fix information leak in create_component() (git-fixes).
- sunrpc: Add an IS_ERR() check back to where it was (git-fixes).
- sunrpc: ECONNRESET might require a rebind (git-fixes).
- sunrpc: Fix RPC client cleaned up the freed pipefs dentries (git-fixes).
- sunrpc: Fix a suspicious RCU usage warning (git-fixes).
- sunrpc: fix a memleak in gss_import_v2_context (git-fixes).
- sunrpc: fix some memleaks in gssx_dec_option_array (git-fixes).
- svcrdma: Drop connection after an RDMA Read error (git-fixes).
- tracing/ring-buffer: Fix wait_on_pipe() race (git-fixes).
- tracing: Have saved_cmdlines arrays all in one allocation (git-fixes).
- tracing: Remove precision vsnprintf() check from print event (git-fixes).
- tracing: Use .flush() call to wake up readers (git-fixes).
- tty: n_gsm: require CAP_NET_ADMIN to attach N_GSM0710 ldisc (bsc#1222619).
- tty: serial: fsl_lpuart: avoid idle preamble pending if CTS is enabled (git-fixes).
- tty: serial: samsung: fix tx_empty() to return TIOCSER_TEMT (git-fixes).
- tty: vt: fix 20 vs 0x20 typo in EScsiignore (git-fixes).
- ubifs: Queue up space reservation tasks if retrying many times (git-fixes).
- ubifs: Remove unreachable code in dbg_check_ltab_lnum (git-fixes).
- ubifs: Set page uptodate in the correct place (git-fixes).
- ubifs: dbg_check_idx_size: Fix kmemleak if loading znode failed (git-fixes).
- ubifs: fix sort function prototype (git-fixes).
- usb: audio-v2: Correct comments for struct uac_clock_selector_descriptor (git-fixes).
- usb: cdc-wdm: close race between read and workqueue (git-fixes).
- usb: core: Fix deadlock in usb_deauthorize_interface() (git-fixes).
- usb: dwc2: gadget: Fix exiting from clock gating (git-fixes).
- usb: dwc2: gadget: LPM flow fix (git-fixes).
- usb: dwc2: host: Fix ISOC flow in DDMA mode (git-fixes).
- usb: dwc2: host: Fix hibernation flow (git-fixes).
- usb: dwc2: host: Fix remote wakeup from hibernation (git-fixes).
- usb: dwc3: Properly set system wakeup (git-fixes).
- usb: gadget: ncm: Fix handling of zero block length packets (git-fixes).
- usb: gadget: net2272: Use irqflags in the call to net2272_probe_fin (git-fixes).
- usb: port: Do not try to peer unused USB ports based on location (git-fixes).
- usb: typec: Return size of buffer if pd_set operation succeeds (git-fixes).
- usb: typec: ucsi: Check for notifications after init (git-fixes).
- usb: typec: ucsi: Clean up UCSI_CABLE_PROP macros (git-fixes).
- usb: typec: ucsi: Clear EVENT_PENDING under PPM lock (git-fixes).
- usb: usb-storage: Prevent divide-by-0 error in isd200_ata_command (git-fixes).
- usb: xhci: Add error handling in xhci_map_urb_for_dma (git-fixes).
- vboxsf: Avoid an spurious warning if load_nls_xxx() fails (git-fixes).
- vdpa/mlx5: Allow CVQ size changes (git-fixes).
- vt: fix unicode buffer corruption when deleting characters (git-fixes).
- watchdog: stm32_iwdg: initialize default timeout (git-fixes).
- wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() (git-fixes).
- wifi: ath11k: decrease MHI channel buffer length to 8KB (bsc#1207948).
- wifi: ath11k: initialize rx_mcs_80 and rx_mcs_160 before use (git-fixes).
- wifi: ath9k: delay all of ath9k_wmi_event_tasklet() until init is complete (git-fixes).
- wifi: b43: Disable QoS for bcm4331 (git-fixes).
- wifi: b43: Stop correct queue in DMA worker when QoS is disabled (git-fixes).
- wifi: b43: Stop/wake correct queue in DMA Tx path when QoS is disabled (git-fixes).
- wifi: b43: Stop/wake correct queue in PIO Tx path when QoS is disabled (git-fixes).
- wifi: brcmfmac: fix copyright year mentioned in platform_data header (git-fixes).
- wifi: brcmsmac: avoid function pointer casts (git-fixes).
- wifi: iwlwifi: dbg-tlv: ensure NUL termination (git-fixes).
- wifi: iwlwifi: fix EWRD table validity check (git-fixes).
- wifi: iwlwifi: fw: do not always use FW dump trig (git-fixes).
- wifi: iwlwifi: mvm: do not set replay counters to 0xff (git-fixes).
- wifi: iwlwifi: mvm: report beacon protection failures (git-fixes).
- wifi: iwlwifi: mvm: rfi: fix potential response leaks (git-fixes).
- wifi: iwlwifi: mvm: use FW rate for non-data only on new devices (git-fixes).
- wifi: libertas: fix some memleaks in lbs_allocate_cmd_buffer() (git-fixes).
- wifi: mwifiex: debugfs: Drop unnecessary error check for debugfs_create_dir() (git-fixes).
- wifi: rtl8xxxu: add cancel_work_sync() for c2hcmd_work (git-fixes).
- wifi: rtw88: 8821c: Fix false alarm count (git-fixes).
- wifi: wilc1000: fix RCU usage in connect path (git-fixes).
- wifi: wilc1000: fix declarations ordering (stable-fixes).
- wifi: wilc1000: fix multi-vif management when deleting a vif (git-fixes).
- wifi: wilc1000: prevent use-after-free on vif when cleaning up all interfaces (git-fixes).
- x86/CPU/AMD: Update the Zenbleed microcode revisions (git-fixes).
- x86/bugs: Fix the SRSO mitigation on Zen3/4 (git-fixes).
- x86/fpu: Keep xfd_state in sync with MSR_IA32_XFD (git-fixes).
- x86/xen: Add some null pointer checking to smp.c (git-fixes).
- x86/xen: add CPU dependencies for 32-bit build (git-fixes).
- x86/xen: fix percpu vcpu_info allocation (git-fixes).
- xen-netback: properly sync TX responses (git-fixes).
- xen-netfront: Add missing skb_mark_for_recycle (git-fixes).
- xen/gntdev: Fix the abuse of underlying struct page in DMA-buf import (git-fixes).
- xen/xenbus: document will_handle argument for xenbus_watch_path() (git-fixes).
- xhci: handle isoc Babble and Buffer Overrun events properly (git-fixes).
- xhci: process isoc TD properly when there was a transaction error mid TD (git-fixes).
Patchnames
SUSE-2024-1490,SUSE-SLE-Module-Public-Cloud-15-SP5-2024-1490,openSUSE-SLE-15.5-2024-1490
Terms of use
CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).
{ "document": { "aggregate_severity": { "namespace": "https://www.suse.com/support/security/rating/", "text": "important" }, "category": "csaf_security_advisory", "csaf_version": "2.0", "distribution": { "text": "Copyright 2024 SUSE LLC. All rights reserved.", "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "en", "notes": [ { "category": "summary", "text": "Security update for the Linux Kernel", "title": "Title of the patch" }, { "category": "description", "text": "\n\nThe SUSE Linux Enterprise 15 SP5 Azure kernel was updated to receive various security bugfixes.\n\nThe following security bugs were fixed:\n\n- CVE-2021-46925: Fixed kernel panic caused by race of smc_sock (bsc#1220466).\n- CVE-2021-46926: Fixed bug when detecting controllers in ALSA/hda/intel-sdw-acpi (bsc#1220478).\n- CVE-2021-46927: Fixed assertion bug in nitro_enclaves: Use get_user_pages_unlocked() (bsc#1220443).\n- CVE-2021-46929: Fixed use-after-free issue in sctp_sock_dump() (bsc#1220482).\n- CVE-2021-46930: Fixed usb/mtu3 list_head check warning (bsc#1220484).\n- CVE-2021-46931: Fixed wrong type casting in mlx5e_tx_reporter_dump_sq() (bsc#1220486).\n- CVE-2021-46933: Fixed possible underflow in ffs_data_clear() (bsc#1220487).\n- CVE-2021-46936: Fixed use-after-free in tw_timer_handler() (bsc#1220439).\n- CVE-2021-47082: Fixed ouble free in tun_free_netdev() (bsc#1220969).\n- CVE-2021-47087: Fixed incorrect page free bug in tee/optee (bsc#1220954).\n- CVE-2021-47091: Fixed locking in ieee80211_start_ap()) error path (bsc#1220959).\n- CVE-2021-47093: Fixed memleak on registration failure in intel_pmc_core (bsc#1220978).\n- CVE-2021-47094: Fixed possible memory leak in KVM x86/mmu (bsc#1221551).\n- CVE-2021-47095: Fixed missing initialization in ipmi/ssif (bsc#1220979).\n- CVE-2021-47096: Fixed uninitalized user_pversion in ALSA rawmidi (bsc#1220981).\n- CVE-2021-47097: Fixed stack out of bound access in elantech_change_report_id() (bsc#1220982).\n- CVE-2021-47098: Fixed integer overflow/underflow in hysteresis calculations hwmon: (lm90) (bsc#1220983).\n- CVE-2021-47099: Fixed BUG_ON assertion in veth when skb entering GRO are cloned (bsc#1220955).\n- CVE-2021-47100: Fixed UAF when uninstall in ipmi (bsc#1220985).\n- CVE-2021-47101: Fixed uninit-value in asix_mdio_read() (bsc#1220987).\n- CVE-2021-47102: Fixed incorrect structure access In line: upper = info-\u003eupper_dev in net/marvell/prestera (bsc#1221009).\n- CVE-2021-47104: Fixed memory leak in qib_user_sdma_queue_pkts() (bsc#1220960).\n- CVE-2021-47105: Fixed potential memory leak in ice/xsk (bsc#1220961).\n- CVE-2021-47107: Fixed READDIR buffer overflow in NFSD (bsc#1220965).\n- CVE-2021-47108: Fixed possible NULL pointer dereference for mtk_hdmi_conf in drm/mediatek (bsc#1220986).\n- CVE-2021-47181: Fixed a null pointer dereference caused by calling platform_get_resource() (bsc#1222660).\n- CVE-2021-47182: Fixed buffer length handling in scsi_mode_sense() in scsi core (bsc#1222662).\n- CVE-2021-47183: Fixed a null pointer dereference during link down processing in scsi lpfc (bsc#1192145, bsc#1222664).\n- CVE-2021-47185: Fixed a softlockup issue in flush_to_ldisc in tty tty_buffer (bsc#1222669).\n- CVE-2021-47189: Fixed denial of service due to memory ordering issues between normal and ordered work functions in btrfs (bsc#1222706).\n- CVE-2022-4744: Fixed double-free that could lead to DoS or privilege escalation in TUN/TAP device driver functionality (bsc#1209635).\n- CVE-2022-48626: Fixed a potential use-after-free on remove path moxart (bsc#1220366).\n- CVE-2022-48629: Fixed possible memory leak in qcom-rng (bsc#1220989).\n- CVE-2022-48630: Fixed infinite loop on requests not multiple of WORD_SZ in crypto: qcom-rng (bsc#1220990).\n- CVE-2023-0160: Fixed deadlock flaw in BPF that could allow a local user to potentially crash the system (bsc#1209657).\n- CVE-2023-28746: Fixed Register File Data Sampling (bsc#1213456).\n- CVE-2023-35827: Fixed a use-after-free issue in ravb_tx_timeout_work() (bsc#1212514).\n- CVE-2023-4881: Fixed a out-of-bounds write flaw in the netfilter subsystem that could lead to potential information disclosure or a denial of service (bsc#1215221).\n- CVE-2023-52447: Fixed map_fd_put_ptr() signature kABI workaround (bsc#1220251).\n- CVE-2023-52450: Fixed NULL pointer dereference issue in upi_fill_topology() (bsc#1220237).\n- CVE-2023-52453: Fixed data corruption in hisi_acc_vfio_pci (bsc#1220337).\n- CVE-2023-52454: Fixed a kernel panic when host sends an invalid H2C PDU length (bsc#1220320).\n- CVE-2023-52469: Fixed a use-after-free in kv_parse_power_table (bsc#1220411).\n- CVE-2023-52470: Fixed null-ptr-deref in radeon_crtc_init() (bsc#1220413).\n- CVE-2023-52474: Fixed a vulnerability with non-PAGE_SIZE-end multi-iovec user SDMA requests (bsc#1220445).\n- CVE-2023-52476: Fixed possible unhandled page fault via perf sampling NMI during vsyscall (bsc#1220703).\n- CVE-2023-52477: Fixed USB Hub accesses to uninitialized BOS descriptors (bsc#1220790).\n- CVE-2023-52481: Fixed speculative unprivileged load in Cortex-A520 (bsc#1220887).\n- CVE-2023-52484: Fixed a soft lockup triggered by arm_smmu_mm_invalidate_range (bsc#1220797).\n- CVE-2023-52486: Fixed possible use-after-free in drm (bsc#1221277).\n- CVE-2023-52488: Fixed data corruption due to error on incrementing register address in regmap functions for FIFO in serial sc16is7xx (bsc#1221162).\n- CVE-2023-52492: Fixed a null-pointer-dereference in channel unregistration function __dma_async_device_channel_register() (bsc#1221276).\n- CVE-2023-52493: Fixed possible soft lockup in bus/mhi/host (bsc#1221274).\n- CVE-2023-52494: Fixed missing alignment check for event ring read pointer in bus/mhi/host (bsc#1221273).\n- CVE-2023-52497: Fixed data corruption in erofs (bsc#1220879).\n- CVE-2023-52500: Fixed information leaking when processing OPC_INB_SET_CONTROLLER_CONFIG command (bsc#1220883).\n- CVE-2023-52501: Fixed possible memory corruption in ring-buffer (bsc#1220885).\n- CVE-2023-52502: Fixed a race condition in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() (bsc#1220831).\n- CVE-2023-52503: Fixed use-after-free in amdtee_close_session due to race condition with amdtee_open_session in tee amdtee (bsc#1220915).\n- CVE-2023-52504: Fixed possible out-of bounds in apply_alternatives() on a 5-level paging machine (bsc#1221553).\n- CVE-2023-52507: Fixed possible shift-out-of-bounds in nfc/nci (bsc#1220833).\n- CVE-2023-52508: Fixed null pointer dereference in nvme_fc_io_getuuid() (bsc#1221015).\n- CVE-2023-52509: Fixed a use-after-free issue in ravb_tx_timeout_work() (bsc#1220836).\n- CVE-2023-52510: Fixed a potential UAF in ca8210_probe() (bsc#1220898).\n- CVE-2023-52511: Fixed possible memory corruption in spi/sun6i (bsc#1221012).\n- CVE-2023-52513: Fixed connection failure handling in RDMA/siw (bsc#1221022).\n- CVE-2023-52515: Fixed possible use-after-free in RDMA/srp (bsc#1221048).\n- CVE-2023-52517: Fixed race between DMA RX transfer completion and RX FIFO drain in spi/sun6i (bsc#1221055).\n- CVE-2023-52518: Fixed information leak in bluetooth/hci_codec (bsc#1221056).\n- CVE-2023-52519: Fixed possible overflow in HID/intel-ish-hid/ipc (bsc#1220920).\n- CVE-2023-52520: Fixed reference leak in platform/x86/think-lmi (bsc#1220921).\n- CVE-2023-52523: Fixed wrong redirects to non-TCP sockets in bpf (bsc#1220926).\n- CVE-2023-52524: Fixed possible corruption in nfc/llcp (bsc#1220927).\n- CVE-2023-52525: Fixed out of bounds check mwifiex_process_rx_packet() (bsc#1220840).\n- CVE-2023-52528: Fixed uninit-value access in __smsc75xx_read_reg() (bsc#1220843).\n- CVE-2023-52529: Fixed a potential memory leak in sony_probe() (bsc#1220929).\n- CVE-2023-52532: Fixed a bug in TX CQE error handling (bsc#1220932).\n- CVE-2023-52561: Fixed denial of service due to missing reserved attribute on cont splash memory region in arm64 dts qcom sdm845-db845c (bsc#1220935).\n- CVE-2023-52563: Fixed memory leak on -\u003ehpd_notify callback() in drm/meson (bsc#1220937).\n- CVE-2023-52564: Reverted invalid fix for UAF in gsm_cleanup_mux() (bsc#1220938).\n- CVE-2023-52566: Fixed potential use after free in nilfs_gccache_submit_read_data() (bsc#1220940).\n- CVE-2023-52567: Fixed possible Oops in serial/8250_port: when using IRQ polling (irq = 0) (bsc#1220839).\n- CVE-2023-52569: Fixed a bug in btrfs by remoning BUG() after failure to insert delayed dir index item (bsc#1220918).\n- CVE-2023-52574: Fixed a bug by hiding new member header_ops (bsc#1220870).\n- CVE-2023-52575: Fixed SBPB enablement for spec_rstack_overflow=off (bsc#1220871).\n- CVE-2023-52576: Fixed potential use after free in memblock_isolate_range() (bsc#1220872).\n- CVE-2023-52582: Fixed possible oops in netfs (bsc#1220878).\n- CVE-2023-52583: Fixed deadlock or deadcode of misusing dget() inside ceph (bsc#1221058).\n- CVE-2023-52587: Fixed mcast list locking in IB/ipoib (bsc#1221082).\n- CVE-2023-52591: Fixed a possible reiserfs filesystem corruption via directory renaming (bsc#1221044).\n- CVE-2023-52594: Fixed potential array-index-out-of-bounds read in ath9k_htc_txstatus() (bsc#1221045).\n- CVE-2023-52595: Fixed possible deadlock in wifi/rt2x00 (bsc#1221046).\n- CVE-2023-52597: Fixed a setting of fpc register in KVM (bsc#1221040).\n- CVE-2023-52598: Fixed wrong setting of fpc register in s390/ptrace (bsc#1221060).\n- CVE-2023-52599: Fixed array-index-out-of-bounds in diNewExt() in jfs (bsc#1221062).\n- CVE-2023-52600: Fixed uaf in jfs_evict_inode() (bsc#1221071).\n- CVE-2023-52601: Fixed array-index-out-of-bounds in dbAdjTree() in jfs (bsc#1221068).\n- CVE-2023-52602: Fixed slab-out-of-bounds Read in dtSearch() in jfs (bsc#1221070).\n- CVE-2023-52603: Fixed array-index-out-of-bounds in dtSplitRoot() (bsc#1221066).\n- CVE-2023-52604: Fixed array-index-out-of-bounds in dbAdjTree() (bsc#1221067).\n- CVE-2023-52605: Fixed a NULL pointer dereference check (bsc#1221039)\n- CVE-2023-52606: Fixed possible kernel stack corruption in powerpc/lib (bsc#1221069).\n- CVE-2023-52607: Fixed a null-pointer-dereference in pgtable_cache_add kasprintf() (bsc#1221061).\n- CVE-2023-52608: Fixed possible race condition in firmware/arm_scmi (bsc#1221375).\n- CVE-2023-52612: Fixed req-\u003edst buffer overflow in crypto/scomp (bsc#1221616).\n- CVE-2023-52615: Fixed page fault dead lock on mmap-ed hwrng (bsc#1221614).\n- CVE-2023-52617: Fixed stdev_release() crash after surprise hot remove (bsc#1221613).\n- CVE-2023-52619: Fixed possible crash when setting number of cpus to an odd number in pstore/ram (bsc#1221618).\n- CVE-2023-52621: Fixed missing asserion in bpf (bsc#1222073).\n- CVE-2023-52623: Fixed suspicious RCU usage in SUNRPC (bsc#1222060).\n- CVE-2023-52627: Fixed null pointer dereference due to lack of callback functions in iio adc ad7091r (bsc#1222051)\n- CVE-2023-52628: Fixed 4-byte stack OOB write in nftables (bsc#1222117).\n- CVE-2023-52632: Fixed lock dependency warning with srcu in drm/amdkfd (bsc#1222274).\n- CVE-2023-52636: Fixed denial of service due to wrongly init the cursor when preparing sparse read in msgr2 in libceph (bsc#1222247).\n- CVE-2023-52637: Fixed UAF in j1939_sk_match_filter() in can/k1939 (bsc#1222291).\n- CVE-2023-52639: Fixed race during shadow creation in KVM/s390/vsie Fixed (bsc#1222300).\n- CVE-2023-6356: Fixed a NULL pointer dereference in nvmet_tcp_build_pdu_iovec (bsc#1217987).\n- CVE-2023-6535: Fixed a NULL pointer dereference in nvmet_tcp_execute_request (bsc#1217988).\n- CVE-2023-6536: Fixed a NULL pointer dereference in __nvmet_req_complete (bsc#1217989).\n- CVE-2023-7042: Fixed a null-pointer-dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() (bsc#1218336).\n- CVE-2023-7192: Fixed a memory leak problem in ctnetlink_create_conntrack in net/netfilter/nf_conntrack_netlink.c (bsc#1218479).\n- CVE-2024-0841: Fixed null pointer dereference in hugetlbfs_fill_super() (bsc#1219264).\n- CVE-2024-2201: Fixed information leak in x86/BHI (bsc#1217339).\n- CVE-2024-22099: Fixed a null-pointer-dereference in rfcomm_check_security (bsc#1219170).\n- CVE-2024-23307: Fixed Integer Overflow or Wraparound vulnerability in x86 and ARM md, raid, raid5 modules (bsc#1219169).\n- CVE-2024-23850: Fixed denial of service due to assertion failure due to subvolume readed before root item insertion in btrfs_get_root_ref in btrfs (bsc#1219126).\n- CVE-2024-23850: Fixed double free of anonymous device after snapshot creation failure (bsc#1219126).\n- CVE-2024-25739: Fixed possible crash in create_empty_lvol() in drivers/mtd/ubi/vtbl.c (bsc#1219834).\n- CVE-2024-25742: Fixed insufficient validation during #VC instruction emulation in x86/sev (bsc#1221725).\n- CVE-2024-26599: Fixed out-of-bounds access in of_pwm_single_xlate() (bsc#1220365).\n- CVE-2024-26600: Fixed NULL pointer dereference for SRP in phy-omap-usb2 (bsc#1220340).\n- CVE-2024-26602: Fixed overall slowdowns with sys_membarrier (bsc1220398).\n- CVE-2024-26612: Fixed Oops in fscache_put_cache() This function dereferences (bsc#1221291).\n- CVE-2024-26614: Fixed the initialization of accept_queue\u0027s spinlocks (bsc#1221293).\n- CVE-2024-26620: Fixed possible device model violation in s390/vfio-ap (bsc#1221298).\n- CVE-2024-26627: Fixed possible hard lockup in scsi (bsc#1221090).\n- CVE-2024-26629: Fixed possible protocol violation via RELEASE_LOCKOWNER in nfsd (bsc#1221379).\n- CVE-2024-26642: Fixed the set of anonymous timeout flag in netfilter nf_tables (bsc#1221830).\n- CVE-2024-26645: Fixed missing visibility when inserting an element into tracing_map (bsc#1222056).\n- CVE-2024-26646: Fixed potential memory corruption when resuming from suspend or hibernation in thermal/intel/hfi (bsc#1222070).\n- CVE-2024-26651: Fixed possible oops via malicious devices in sr9800 (bsc#1221337).\n- CVE-2024-26654: Fixed use after free in ALSA/sh/aica (bsc#1222304).\n- CVE-2024-26659: Fixed wrong handling of isoc Babble and Buffer Overrun events in xhci (bsc#1222317).\n- CVE-2024-26660: Fixed buffer overflow in dcn301_stream_encoder_create in drm amd display (bsc#1222266)\n- CVE-2024-26664: Fixed out-of-bounds memory access in create_core_data() in hwmon coretemp (bsc#1222355).\n- CVE-2024-26667: Fixed null pointer reference in dpu_encoder_helper_phys_cleanup in drm/msm/dpu (bsc#1222331).\n- CVE-2024-26670: Fixed ARM64_WORKAROUND_SPECULATIVE_UNPRIV_LOAD workaround in kernel arm64 (bsc#1222356).\n- CVE-2024-26680: Fixed denial of service due to DMA mapping for PTP hwts ring in net atlantic (bsc#1222427).\n- CVE-2024-26681: Fixed denial of service in nsim_dev_trap_report_work() in netdevsim (bsc#1222431).\n- CVE-2024-26684: Fixed handling of DPP safety error for DMA channels in net stmmac xgmac (bsc#1222445).\n- CVE-2024-26685: Fixed denial of service in end_buffer_async_write() in nilfs2 (bsc#1222437).\n- CVE-2024-26689: Fixed use-after-free in encode_cap_msg() in ceph (bsc#1222503).\n- CVE-2024-26695: Fixed null pointer dereference in __sev_platform_shutdown_locked in crypto ccp (bsc#1222373).\n- CVE-2024-26696: Fixed denial of service in nilfs_lookup_dirty_data_buffers() in nilfs2 (bsc#1222549).\n- CVE-2024-26697: Fixed data corruption in dsync block recovery for small block sizes in nilfs2 (bsc#1222550).\n- CVE-2024-26704: Fixed a double-free of blocks due to wrong extents moved_len in ext4 (bsc#1222422).\n- CVE-2024-26717: Fixed null pointer dereference on failed power up in HID i2c-hid-of (bsc#1222360).\n- CVE-2024-26718: Fixed memory corruption in tasklet_unlock via disabling tasklets in dm-crypt and dm-verify (bsc#1222416).\n- CVE-2024-26722: Fixed denial of service in rt5645_jack_detect_work() due to mutex left locked forever in ASoC rt5645 (bsc#1222520).\n- CVE-2024-26727: Fixed denial of service due to assertion failure during subvolume creation (bsc#1222536).\n- CVE-2024-26733: Fixed an overflow in arp_req_get() in arp (bsc#1222585).\n- CVE-2024-26736: Fixed buffer overflow in afs_update_volume_status() in afs (bsc#1222586).\n- CVE-2024-26737: Fixed use-after-free due to race between bpf_timer_cancel_and_free and bpf_timer_cancel in bpf (bsc#1222557).\n- CVE-2024-26743: Fixed memory leak in qedr_create_user_qp error flow in rdma/qedr (bsc#1222677)\n- CVE-2024-26744: Fixed null pointer dereference in srpt_service_guid parameter in rdma/srpt (bsc#1222449)\n- CVE-2024-26745: Fixed null pointer dereference due to IOMMU table not initialized for kdump over SR-IOV (bsc#1220492, bsc#1222678).\n- CVE-2024-26747: Fixed null pointer issue when put module\u0027s reference in usb roles (bsc#1222609).\n- CVE-2024-26749: Fixed use-after-free at cdns3_gadget_ep_disable() in usb cdns3 (bsc#1222680).\n- CVE-2024-26751: Fixed denial of service due to gpiod_lookup_table search loop not ending correctly (bsc#1222724)\n- CVE-2024-26754: Fixed an use-after-free and null-ptr-deref in gtp_genl_dump_pdp() in gtp (bsc#1222632).\n- CVE-2024-26760: Fixed null pointer dereference on error case in bio_put() in scsi target pscsi (bsc#1222596)\n- CVE-2024-26763: Fixed user corruption via by writing data with O_DIRECT on device in dm-crypt (bsc#1222720).\n- CVE-2024-26766: Fixed off-by-one error in sdma.h tx-\u003enum_descs in ib/hfi1 (bsc#1222726)\n- CVE-2024-26769: Fixed deadlock on delete association path in nvmet-fc (bsc#1222727).\n- CVE-2024-26771: Fixed a null pointer dereference on edma_probe in dmaengine ti edma (bsc#1222610)\n- CVE-2024-26776: Fixed null pointer dereference due to null value returned by interrupt handler in spi hisi-sfc-v3xx (bsc#1222764)\n- CVE-2024-26779: Fixed denial of service due to race condition on enabling fast-xmit in wifi mac80211 (bsc#1222772).\n- CVE-2024-26787: Fixed DMA API overlapping mappings in mmc mmci stm32 (bsc#1222781)\n- CVE-2024-26790: Fixed denial of service on 16 bytes unaligned read in dmaengine fsl-qdma (bsc#1222784)\n- CVE-2024-26793: Fixed an use-after-free and null-ptr-deref in gtp_newlink() in gtp (bsc#1222428).\n- CVE-2024-26798: Fixed denial of service due to wrongly restore fond data upon failure in fbcon (bsc#1222798).\n- CVE-2024-26805: Fixed a kernel-infoleak-after-free in __skb_datagram_iter in netlink (bsc#1222630).\n- CVE-2024-26807: Fixed memory corruption due to wrong pointer reference in spi cadence-qspi (bsc#1222801)\n- CVE-2024-26848: Fixed denial of service due to endless loop in directory parsing in afs (bsc#1223030).\n\nThe following non-security bugs were fixed:\n\n- Revert \u0027PCI: tegra194: Enable support for 256 Byte payload\u0027 (git-fixes).\n- Revert \u0027Revert \u0027drm/amdgpu/display: change pipe policy for DCN 2.0\u0027\u0027 (git-fixes).\n- Revert \u0027SUNRPC dont update timeout value on connection reset\u0027 (git-fixes).\n- Revert \u0027drm/amd: Disable PSR-SU on Parade 0803 TCON\u0027 (git-fixes).\n- Revert \u0027drm/amd: Disable S/G for APUs when 64GB or more host memory\u0027 (git-fixes).\n- Revert \u0027drm/amdgpu/display: change pipe policy for DCN 2.0\u0027 (git-fixes).\n- Revert \u0027drm/amdgpu/display: change pipe policy for DCN 2.1\u0027 (git-fixes).\n- Revert \u0027drm/vc4: hdmi: Enforce the minimum rate at runtime_resume\u0027 (git-fixes).\n- Revert \u0027fbdev: flush deferred IO before closing (git-fixes).\u0027 (bsc#1221814)\n- acpi: CPPC: enable AMD CPPC V2 support for family 17h processors (git-fixes).\n- acpi: processor_idle: Fix memory leak in acpi_processor_power_exit() (git-fixes).\n- acpi: resource: Add Infinity laptops to irq1_edge_low_force_override (stable-fixes).\n- acpi: resource: Add MAIBENBEN X577 to irq1_edge_low_force_override (git-fixes).\n- acpi: resource: Do IRQ override on Lunnen Ground laptops (stable-fixes).\n- acpi: scan: Fix device check notification handling (git-fixes).\n- acpica: debugger: check status of acpi_evaluate_object() in acpi_db_walk_for_fields() (git-fixes).\n- alsa: aaci: Delete unused variable in aaci_do_suspend (git-fixes).\n- alsa: aoa: avoid false-positive format truncation warning (git-fixes).\n- alsa: aw2: avoid casting function pointers (git-fixes).\n- alsa: ctxfi: avoid casting function pointers (git-fixes).\n- alsa: hda/realtek - ALC285 reduce pop noise from Headphone port (stable-fixes).\n- alsa: hda/realtek - Add Headset Mic supported Acer NB platform (stable-fixes).\n- alsa: hda/realtek - Fix headset Mic no show at resume back for Lenovo ALC897 platform (git-fixes).\n- alsa: hda/realtek: Enable Mute LED on HP 840 G8 (MB 8AB8) (git-fixes).\n- alsa: hda/realtek: Update Panasonic CF-SZ6 quirk to support headset with microphone (git-fixes).\n- alsa: hda/realtek: fix ALC285 issues on HP Envy x360 laptops (stable-fixes).\n- alsa: hda/realtek: fix mute/micmute LED For HP mt440 (git-fixes).\n- alsa: hda/realtek: fix mute/micmute LEDs for HP EliteBook (stable-fixes).\n- alsa: seq: fix function cast warnings (git-fixes).\n- alsa: sh: aica: reorder cleanup operations to avoid UAF bugs (git-fixes).\n- alsa: usb-audio: Stop parsing channels bits when all channels are found (git-fixes).\n- arm64: dts: allwinner: h6: Add RX DMA channel for SPDIF (git-fixes)\n- arm64: dts: broadcom: bcmbca: bcm4908: drop invalid switch cells (git-fixes)\n- arm64: dts: imx8mm-kontron: Add support for ultra high speed modes on (git-fixes)\n- arm64: dts: imx8mm-venice-gw71xx: fix USB OTG VBUS (git-fixes)\n- arm64: dts: marvell: reorder crypto interrupts on Armada SoCs (git-fixes)\n- arm64: dts: rockchip: add ES8316 codec for ROCK Pi 4 (git-fixes)\n- arm64: dts: rockchip: add SPDIF node for ROCK Pi 4 (git-fixes)\n- arm64: dts: rockchip: fix regulator name on rk3399-rock-4 (git-fixes)\n- arm64: dts: rockchip: set num-cs property for spi on px30 (git-fixes)\n- arm64: mm: fix VA-range sanity check (git-fixes)\n- arm64: set __exception_irq_entry with __irq_entry as a default (git-fixes)\n- asoc: Intel: bytcr_rt5640: Add an extra entry for the Chuwi Vi8 tablet (stable-fixes).\n- asoc: amd: acp: Add missing error handling in sof-mach (git-fixes).\n- asoc: amd: acp: fix for acp_init function error handling (git-fixes).\n- asoc: madera: Fix typo in madera_set_fll_clks shift value (git-fixes).\n- asoc: meson: Use dev_err_probe() helper (stable-fixes).\n- asoc: meson: aiu: fix function pointer type mismatch (git-fixes).\n- asoc: meson: axg-tdm-interface: add frame rate constraint (git-fixes).\n- asoc: meson: axg-tdm-interface: fix mclk setup without mclk-fs (git-fixes).\n- asoc: meson: t9015: fix function pointer type mismatch (git-fixes).\n- asoc: ops: Fix wraparound for mask in snd_soc_get_volsw (git-fixes).\n- asoc: rcar: adg: correct TIMSEL setting for SSI9 (git-fixes).\n- asoc: rt5645: Make LattePanda board DMI match more precise (stable-fixes).\n- asoc: rt5682-sdw: fix locking sequence (git-fixes).\n- asoc: rt711-sdca: fix locking sequence (git-fixes).\n- asoc: rt711-sdw: fix locking sequence (git-fixes).\n- asoc: wm8962: Enable both SPKOUTR_ENA and SPKOUTL_ENA in mono mode (stable-fixes).\n- asoc: wm8962: Enable oscillator if selecting WM8962_FLL_OSC (stable-fixes).\n- asoc: wm8962: Fix up incorrect error message in wm8962_set_fll (stable-fixes).\n- ata: sata_mv: Fix PCI device ID table declaration compilation warning (git-fixes).\n- ata: sata_sx4: fix pdc20621_get_from_dimm() on 64-bit (git-fixes).\n- backlight: da9052: Fully initialize backlight_properties during probe (git-fixes).\n- backlight: lm3630a: Do not set bl-\u003eprops.brightness in get_brightness (git-fixes).\n- backlight: lm3630a: Initialize backlight_properties on init (git-fixes).\n- backlight: lm3639: Fully initialize backlight_properties during probe (git-fixes).\n- backlight: lp8788: Fully initialize backlight_properties during probe (git-fixes).\n- bcache: Fix __bch_btree_node_alloc to make the failure behavior consistent (git-fixes).\n- bcache: Remove dead references to cache_readaheads (git-fixes).\n- bcache: Remove unnecessary NULL point check in node allocations (git-fixes).\n- bcache: add code comments for bch_btree_node_get() and __bch_btree_node_alloc() (git-fixes).\n- bcache: avoid NULL checking to c-\u003eroot in run_cache_set() (git-fixes).\n- bcache: avoid oversize memory allocation by small stripe_size (git-fixes).\n- bcache: bset: Fix comment typos (git-fixes).\n- bcache: check return value from btree_node_alloc_replacement() (git-fixes).\n- bcache: fix NULL pointer reference in cached_dev_detach_finish (git-fixes).\n- bcache: fix error info in register_bcache() (git-fixes).\n- bcache: fixup bcache_dev_sectors_dirty_add() multithreaded CPU false sharing (git-fixes).\n- bcache: fixup btree_cache_wait list damage (git-fixes).\n- bcache: fixup init dirty data errors (git-fixes).\n- bcache: fixup lock c-\u003eroot error (git-fixes).\n- bcache: fixup multi-threaded bch_sectors_dirty_init() wake-up race (git-fixes).\n- bcache: move calc_cached_dev_sectors to proper place on backing device detach (git-fixes).\n- bcache: move uapi header bcache.h to bcache code directory (git-fixes).\n- bcache: prevent potential division by zero error (git-fixes).\n- bcache: remove EXPERIMENTAL for Kconfig option \u0027Asynchronous device registration\u0027 (git-fixes).\n- bcache: remove bch_crc64_update (git-fixes).\n- bcache: remove redundant assignment to variable cur_idx (git-fixes).\n- bcache: remove the backing_dev_name field from struct cached_dev (git-fixes).\n- bcache: remove the cache_dev_name field from struct cache (git-fixes).\n- bcache: remove unnecessary flush_workqueue (git-fixes).\n- bcache: remove unused bch_mark_cache_readahead function def in stats.h (git-fixes).\n- bcache: replace a mistaken IS_ERR() by IS_ERR_OR_NULL() in btree_gc_coalesce() (git-fixes).\n- bcache: replace snprintf in show functions with sysfs_emit (git-fixes).\n- bcache: revert replacing IS_ERR_OR_NULL with IS_ERR (git-fixes).\n- bcache: use bvec_kmap_local in bch_data_verify (git-fixes).\n- bcache: use bvec_kmap_local in bio_csum (git-fixes).\n- bcache: use default_groups in kobj_type (git-fixes).\n- bcache:: fix repeated words in comments (git-fixes).\n- blocklayoutdriver: Fix reference leak of pnfs_device_node (git-fixes).\n- bluetooth: hci_core: Fix possible buffer overflow (git-fixes).\n- bluetooth: mgmt: Remove leftover queuing of power_off work (git-fixes).\n- bluetooth: remove HCI_POWER_OFF_TIMEOUT (git-fixes).\n- bluetooth: remove superfluous call to hci_conn_check_pending() (git-fixes).\n- bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_check_security (stable-fixes).\n- bpf, scripts: Correct GPL license name (git-fixes).\n- bpf, sockmap: Fix preempt_rt splat when using raw_spin_lock_t (git-fixes).\n- can: softing: remove redundant NULL check (git-fixes).\n- ceph: stop copying to iter at EOF on sync reads (bsc#1223068).\n- ceph: switch to corrected encoding of max_xattr_size in mdsmap (bsc#1223067).\n- clk: zynq: Prevent null pointer dereference caused by kmalloc failure (git-fixes).\n- comedi: comedi_test: Prevent timers rescheduling during deletion (git-fixes).\n- coresight: etm4x: Do not access TRCIDR1 for identification (bsc#1220775)\n- coresight: etm4x: Fix accesses to TRCSEQRSTEVR and TRCSEQSTR (bsc#1220775)\n- coresight: etm: Override TRCIDR3.CCITMIN on errata affected cpus (bsc#1220775)\n- cpufreq: amd-pstate: Fix min_perf assignment in amd_pstate_adjust_perf() (git-fixes).\n- cpufreq: brcmstb-avs-cpufreq: add check for cpufreq_cpu_get\u0027s return value (git-fixes).\n- crypto: arm/sha - fix function cast warnings (git-fixes).\n- crypto: qat - avoid division by zero (git-fixes).\n- crypto: qat - fix deadlock in backlog processing (git-fixes).\n- crypto: qat - fix double free during reset (git-fixes).\n- crypto: qat - fix state machines cleanup paths (bsc#1218321).\n- crypto: qat - fix unregistration of compression algorithms (git-fixes).\n- crypto: qat - fix unregistration of crypto algorithms (git-fixes).\n- crypto: qat - ignore subsequent state up commands (git-fixes).\n- crypto: qat - increase size of buffers (git-fixes).\n- crypto: qat - resolve race condition during AER recovery (git-fixes).\n- crypto: xilinx - call finalize with bh disabled (git-fixes).\n- dm cache policy smq: ensure IO does not prevent cleaner policy progress (git-fixes).\n- dm cache: add cond_resched() to various workqueue loops (git-fixes).\n- dm clone: call kmem_cache_destroy() in dm_clone_init() error path (git-fixes).\n- dm crypt: add cond_resched() to dmcrypt_write() (git-fixes).\n- dm crypt: avoid accessing uninitialized tasklet (git-fixes).\n- dm flakey: do not corrupt the zero page (git-fixes).\n- dm flakey: fix a bug with 32-bit highmem systems (git-fixes).\n- dm flakey: fix a crash with invalid table line (git-fixes).\n- dm flakey: fix logic when corrupting a bio (git-fixes).\n- dm init: add dm-mod.waitfor to wait for asynchronously probed block devices (git-fixes).\n- dm integrity: call kmem_cache_destroy() in dm_integrity_init() error path (git-fixes).\n- dm integrity: fix out-of-range warning (git-fixes).\n- dm integrity: reduce vmalloc space footprint on 32-bit architectures (git-fixes).\n- dm raid: clean up four equivalent goto tags in raid_ctr() (git-fixes).\n- dm raid: fix false positive for requeue needed during reshape (git-fixes).\n- dm raid: fix missing reconfig_mutex unlock in raid_ctr() error paths (git-fixes).\n- dm stats: check for and propagate alloc_percpu failure (git-fixes).\n- dm thin metadata: Fix ABBA deadlock by resetting dm_bufio_client (git-fixes).\n- dm thin metadata: check fail_io before using data_sm (git-fixes).\n- dm thin: add cond_resched() to various workqueue loops (git-fixes).\n- dm thin: fix deadlock when swapping to thin device (bsc#1177529).\n- dm verity: do not perform FEC for failed readahead IO (git-fixes).\n- dm verity: fix error handling for check_at_most_once on FEC (git-fixes).\n- dm zoned: free dmz-\u003eddev array in dmz_put_zoned_devices (git-fixes).\n- dm-delay: fix a race between delay_presuspend and delay_bio (git-fixes).\n- dm-integrity: do not modify bio\u0027s immutable bio_vec in integrity_metadata() (git-fixes).\n- dm-raid: fix lockdep waring in \u0027pers-\u003ehot_add_disk\u0027 (git-fixes).\n- dm-verity, dm-crypt: align \u0027struct bvec_iter\u0027 correctly (git-fixes).\n- dm-verity: align struct dm_verity_fec_io properly (git-fixes).\n- dm: add cond_resched() to dm_wq_work() (git-fixes).\n- dm: call the resume method on internal suspend (git-fixes).\n- dm: do not lock fs when the map is NULL during suspend or resume (git-fixes).\n- dm: do not lock fs when the map is NULL in process of resume (git-fixes).\n- dm: remove flush_scheduled_work() during local_exit() (git-fixes).\n- dm: send just one event on resize, not two (git-fixes).\n- doc-guide: kernel-doc: tell about object-like macros (git-fixes).\n- doc/README.SUSE: Update information about module support status (jsc#PED-5759)\n- drivers: hv: vmbus: Calculate ring buffer size for more efficient use of memory (git-fixes).\n- drm/amd/display: Add FAMS validation before trying to use it (git-fixes).\n- drm/amd/display: Add function for validate and update new stream (git-fixes).\n- drm/amd/display: Avoid ABM when ODM combine is enabled for eDP (git-fixes).\n- drm/amd/display: Blocking invalid 420 modes on HDMI TMDS for DCN31 (git-fixes).\n- drm/amd/display: Check if link state is valid (git-fixes).\n- drm/amd/display: Copy DC context in the commit streams (git-fixes).\n- drm/amd/display: Disable PSR-SU on Parade 0803 TCON again (git-fixes).\n- drm/amd/display: Enable fast plane updates on DCN3.2 and above (git-fixes).\n- drm/amd/display: Enable new commit sequence only for DCN32x (git-fixes).\n- drm/amd/display: Exit idle optimizations before attempt to access PHY (git-fixes).\n- drm/amd/display: Expand kernel doc for DC (git-fixes).\n- drm/amd/display: Fix a bug when searching for insert_above_mpcc (git-fixes).\n- drm/amd/display: Fix a potential buffer overflow in \u0027dp_dsc_clock_en_read()\u0027 (git-fixes).\n- drm/amd/display: Fix possible underflow for displays with large vblank (git-fixes).\n- drm/amd/display: Fix the delta clamping for shaper LUT (git-fixes).\n- drm/amd/display: Fix underflow issue on 175hz timing (git-fixes).\n- drm/amd/display: For prefetch mode \u003e 0, extend prefetch if possible (git-fixes).\n- drm/amd/display: Guard DCN31 PHYD32CLK logic against chip family (git-fixes).\n- drm/amd/display: Guard against invalid RPTR/WPTR being set (git-fixes).\n- drm/amd/display: Handle seamless boot stream (git-fixes).\n- drm/amd/display: Handle virtual hardware detect (git-fixes).\n- drm/amd/display: Include surface of unaffected streams (git-fixes).\n- drm/amd/display: Include udelay when waiting for INBOX0 ACK (git-fixes).\n- drm/amd/display: Increase frame warning limit with KASAN or KCSAN in dml (git-fixes).\n- drm/amd/display: Keep PHY active for dp config (git-fixes).\n- drm/amd/display: Prevent vtotal from being set to 0 (git-fixes).\n- drm/amd/display: Remove min_dst_y_next_start check for Z8 (git-fixes).\n- drm/amd/display: Restore rptr/wptr for DMCUB as workaround (git-fixes).\n- drm/amd/display: Return the correct HDCP error code (stable-fixes).\n- drm/amd/display: Revert vblank change that causes null pointer crash (git-fixes).\n- drm/amd/display: Rework comments on dc file (git-fixes).\n- drm/amd/display: Rework context change check (git-fixes).\n- drm/amd/display: Set minimum requirement for using PSR-SU on Phoenix (git-fixes).\n- drm/amd/display: Set minimum requirement for using PSR-SU on Rembrandt (git-fixes).\n- drm/amd/display: Update OTG instance in the commit stream (git-fixes).\n- drm/amd/display: Update correct DCN314 register header (git-fixes).\n- drm/amd/display: Update min Z8 residency time to 2100 for DCN314 (git-fixes).\n- drm/amd/display: Use DRAM speed from validation for dummy p-state (git-fixes).\n- drm/amd/display: Use DTBCLK as refclk instead of DPREFCLK (git-fixes).\n- drm/amd/display: Use min transition for all SubVP plane add/remove (git-fixes).\n- drm/amd/display: Write to correct dirty_rect (git-fixes).\n- drm/amd/display: Wrong colorimetry workaround (git-fixes).\n- drm/amd/display: add FB_DAMAGE_CLIPS support (git-fixes).\n- drm/amd/display: add ODM case when looking for first split pipe (git-fixes).\n- drm/amd/display: always switch off ODM before committing more streams (git-fixes).\n- drm/amd/display: clean code-style issues in dcn30_set_mpc_shaper_3dlut (git-fixes).\n- drm/amd/display: dc.h: eliminate kernel-doc warnings (git-fixes).\n- drm/amd/display: ensure async flips are only accepted for fast updates (git-fixes).\n- drm/amd/display: fix ABM disablement (git-fixes).\n- drm/amd/display: fix a NULL pointer dereference in amdgpu_dm_i2c_xfer() (git-fixes).\n- drm/amd/display: fix dc/core/dc.c kernel-doc (git-fixes).\n- drm/amd/display: fix hw rotated modes when PSR-SU is enabled (git-fixes).\n- drm/amd/display: fix kernel-doc issues in dc.h (git-fixes).\n- drm/amd/display: fix unbounded requesting for high pixel rate modes on dcn315 (git-fixes).\n- drm/amd/display: handle range offsets in VRR ranges (stable-fixes).\n- drm/amd/display: perform a bounds check before filling dirty rectangles (git-fixes).\n- drm/amd/display: set per pipe dppclk to 0 when dpp is off (git-fixes).\n- drm/amd/display: update extended blank for dcn314 onwards (git-fixes).\n- drm/amd/display: use low clocks for no plane configs (git-fixes).\n- drm/amd/pm: Fix error of MACO flag setting code (git-fixes).\n- drm/amd/pm: fix a memleak in aldebaran_tables_init (git-fixes).\n- drm/amd/smu: use AverageGfxclkFrequency* to replace previous GFX Curr Clock (git-fixes).\n- drm/amd: Enable PCIe PME from D3 (git-fixes).\n- drm/amdgpu/pm: Fix the error of pwm1_enable setting (stable-fixes).\n- drm/amdgpu/pm: make gfxclock consistent for sienna cichlid (git-fixes).\n- drm/amdgpu/pm: make mclk consistent for smu 13.0.7 (git-fixes).\n- drm/amdgpu/smu13: drop compute workload workaround (git-fixes).\n- drm/amdgpu: Enable gpu reset for S3 abort cases on Raven series (stable-fixes).\n- drm/amdgpu: Fix missing break in ATOM_ARG_IMM Case of atom_get_src_int() (git-fixes).\n- drm/amdgpu: Force order between a read and write to the same address (git-fixes).\n- drm/amdgpu: Match against exact bootloader status (git-fixes).\n- drm/amdgpu: Unset context priority is now invalid (git-fixes).\n- drm/amdgpu: Update min() to min_t() in \u0027amdgpu_info_ioctl\u0027 (git-fixes).\n- drm/amdgpu: amdgpu_ttm_gart_bind set gtt bound flag (stable-fixes).\n- drm/amdgpu: lower CS errors to debug severity (git-fixes).\n- drm/amdkfd: fix TLB flush after unmap for GFX9.4.2 (stable-fixes).\n- drm/bridge: tc358762: Instruct DSI host to generate HSE packets (git-fixes).\n- drm/display: fix typo (git-fixes).\n- drm/edid: Add quirk for OSVR HDK 2.0 (git-fixes).\n- drm/etnaviv: Restore some id values (git-fixes).\n- drm/exynos: do not return negative values from .get_modes() (stable-fixes).\n- drm/exynos: fix a possible null-pointer dereference due to data race in exynos_drm_crtc_atomic_disable() (git-fixes).\n- drm/i915/bios: Tolerate devdata==NULL in intel_bios_encoder_supports_dp_dual_mode() (stable-fixes).\n- drm/i915/gt: Do not generate the command streamer for all the CCS (git-fixes).\n- drm/i915/gt: Reset queue_priority_hint on parking (git-fixes).\n- drm/i915/gt: Use i915_vm_put on ppgtt_create error paths (git-fixes).\n- drm/i915/selftests: Fix dependency of some timeouts on HZ (git-fixes).\n- drm/i915: Add missing CCS documentation (git-fixes).\n- drm/i915: Call intel_pre_plane_updates() also for pipes getting enabled (git-fixes).\n- drm/i915: Check before removing mm notifier (git-fixes).\n- drm/lima: fix a memleak in lima_heap_alloc (git-fixes).\n- drm/mediatek: Fix a null pointer crash in mtk_drm_crtc_finish_page_flip (git-fixes).\n- drm/mediatek: dsi: Fix DSI RGB666 formats and definitions (git-fixes).\n- drm/msm/dpu: Only enable DSC_MODE_MULTIPLEX if dsc_merge is enabled (git-fixes).\n- drm/msm/dpu: add division of drm_display_mode\u0027s hskew parameter (git-fixes).\n- drm/msm/dpu: fix the programming of INTF_CFG2_DATA_HCTL_EN (git-fixes).\n- drm/msm/dpu: improve DSC allocation (git-fixes).\n- drm/panel-edp: use put_sync in unprepare (git-fixes).\n- drm/panel: Move AUX B116XW03 out of panel-edp back to panel-simple (git-fixes).\n- drm/panel: auo,b101uan08.3: Fine tune the panel power sequence (git-fixes).\n- drm/panel: boe-tv101wum-nl6: Fine tune the panel power sequence (git-fixes).\n- drm/panel: do not return negative error codes from drm_panel_get_modes() (stable-fixes).\n- drm/panfrost: fix power transition timeout warnings (git-fixes).\n- drm/probe-helper: warn about negative .get_modes() (stable-fixes).\n- drm/qxl: remove unused `count` variable from `qxl_surface_id_alloc()` (git-fixes).\n- drm/qxl: remove unused variable from `qxl_process_single_command()` (git-fixes).\n- drm/radeon/ni: Fix wrong firmware size logging in ni_init_microcode() (git-fixes).\n- drm/radeon/ni_dpm: remove redundant NULL check (git-fixes).\n- drm/radeon: remove dead code in ni_mc_load_microcode() (git-fixes).\n- drm/rockchip: dsi: Clean up \u0027usage_mode\u0027 when failing to attach (git-fixes).\n- drm/rockchip: inno_hdmi: Fix video timing (git-fixes).\n- drm/rockchip: lvds: do not overwrite error code (git-fixes).\n- drm/rockchip: lvds: do not print scary message when probing defer (git-fixes).\n- drm/tegra: dpaux: Fix PM disable depth imbalance in tegra_dpaux_probe (git-fixes).\n- drm/tegra: dsi: Add missing check for of_find_device_by_node (git-fixes).\n- drm/tegra: dsi: Fix missing pm_runtime_disable() in the error handling path of tegra_dsi_probe() (git-fixes).\n- drm/tegra: dsi: Fix some error handling paths in tegra_dsi_probe() (git-fixes).\n- drm/tegra: dsi: Make use of the helper function dev_err_probe() (stable-fixes).\n- drm/tegra: hdmi: Convert to devm_platform_ioremap_resource() (stable-fixes).\n- drm/tegra: hdmi: Fix some error handling paths in tegra_hdmi_probe() (git-fixes).\n- drm/tegra: output: Fix missing i2c_put_adapter() in the error handling paths of tegra_output_probe() (git-fixes).\n- drm/tegra: put drm_gem_object ref on error in tegra_fb_create (git-fixes).\n- drm/tegra: rgb: Fix missing clk_put() in the error handling paths of tegra_dc_rgb_probe() (git-fixes).\n- drm/tegra: rgb: Fix some error handling paths in tegra_dc_rgb_probe() (git-fixes).\n- drm/tidss: Fix initial plane zpos values (git-fixes).\n- drm/tidss: Fix sync-lost issue with two displays (git-fixes).\n- drm/ttm: Do not leak a resource on eviction error (git-fixes).\n- drm/ttm: Do not print error message if eviction was interrupted (git-fixes).\n- drm/vc4: Add module dependency on hdmi-codec (git-fixes).\n- drm/vmwgfx: Create debugfs ttm_resource_manager entry only if needed (git-fixes).\n- drm/vmwgfx: Fix possible null pointer derefence with invalid contexts (git-fixes).\n- drm/vmwgfx: fix a memleak in vmw_gmrid_man_get_node (git-fixes).\n- drm: Do not treat 0 as -1 in drm_fixp2int_ceil (git-fixes).\n- drm: Fix drm_fixp2int_round() making it add 0.5 (git-fixes).\n- drm: panel-orientation-quirks: Add quirk for Acer Switch V 10 (SW5-017) (git-fixes).\n- firewire: core: use long bus reset on gap count error (stable-fixes).\n- fix \u0027coresight: etm4x: Change etm4_platform_driver driver for MMIO devices\u0027 (bsc#1220775) Hunk with clk_put(drvdata-\u003epclk) was incorrectly moved to another function.\n- force config_TCG_TIS_CORE=m on aarch64 for workaround kconfig issues\n- group-source-files.pl: Quote filenames (boo#1221077). The kernel source now contains a file with a space in the name. Add quotes in group-source-files.pl to avoid splitting the filename. Also use -print0 / -0 when updating timestamps.\n- hid: amd_sfh: Update HPD sensor structure elements (git-fixes).\n- hid: lenovo: Add middleclick_workaround sysfs knob for cptkbd (git-fixes).\n- hid: multitouch: Add required quirk for Synaptics 0xcddc device (stable-fixes).\n- hv_netvsc: Calculate correct ring size when PAGE_SIZE is not 4 Kbytes (git-fixes).\n- hv_netvsc: Fix race condition between netvsc_probe and netvsc_remove (git-fixes).\n- hv_netvsc: Register VF in netvsc_probe if NET_DEVICE_REGISTER missed (git-fixes).\n- i2c: aspeed: Fix the dummy irq expected print (git-fixes).\n- i2c: i801: Avoid potential double call to gpiod_remove_lookup_table (git-fixes).\n- i2c: wmt: Fix an error handling path in wmt_i2c_probe() (git-fixes).\n- ib/ipoib: fix mcast list locking (git-fixes)\n- iio: dummy_evgen: remove Excess kernel-doc comments (git-fixes).\n- iio: pressure: dlhl60d: Initialize empty DLH bytes (git-fixes).\n- input: gpio_keys_polled - suppress deferred probe error for gpio (stable-fixes).\n- input: synaptics-rmi4 - fix UAF of IRQ domain on driver removal (git-fixes).\n- iommu/amd: Add a length limitation for the ivrs_acpihid command-line parameter (git-fixes).\n- iommu/amd: Do not block updates to GATag if guest mode is on (git-fixes).\n- iommu/amd: Fix \u0027Guest Virtual APIC Table Root Pointer\u0027 configuration in IRTE (git-fixes).\n- iommu/amd: Fix domain flush size when syncing iotlb (git-fixes).\n- iommu/amd: Fix error handling for pdev_pri_ats_enable() (git-fixes).\n- iommu/amd: Mark interrupt as managed (git-fixes).\n- iommu/arm-smmu-qcom: Limit the SMR groups to 128 (git-fixes).\n- iommu/arm-smmu-v3: Acknowledge pri/event queue overflow if any (git-fixes).\n- iommu/arm-smmu-v3: Work around MMU-600 erratum 1076982 (git-fixes).\n- iommu/dma: Trace bounce buffer usage when mapping buffers (git-fixes).\n- iommu/fsl: fix all kernel-doc warnings in fsl_pamu.c (git-fixes).\n- iommu/iova: Fix alloc iova overflows issue (git-fixes).\n- iommu/mediatek-v1: Fix an error handling path in mtk_iommu_v1_probe() (git-fixes).\n- iommu/mediatek: Fix forever loop in error handling (git-fixes).\n- iommu/mediatek: Flush IOTLB completely only if domain has been attached (git-fixes).\n- iommu/rockchip: Fix unwind goto issue (git-fixes).\n- iommu/sprd: Release dma buffer to avoid memory leak (git-fixes).\n- iommu/vt-d: Allocate local memory for page request queue (git-fixes).\n- iommu/vt-d: Allow to use flush-queue when first level is default (git-fixes).\n- iommu/vt-d: Allow zero SAGAW if second-stage not supported (git-fixes).\n- iommu/vt-d: Do not issue ATS Invalidation request when device is disconnected (git-fixes).\n- iommu/vt-d: Fix PASID directory pointer coherency (git-fixes).\n- iommu/vt-d: Fix error handling in sva enable/disable paths (git-fixes).\n- iommu/vt-d: Set No Execute Enable bit in PASID table entry (git-fixes).\n- iommu: Fix error unwind in iommu_group_alloc() (git-fixes).\n- kABI: PCI: Add locking to RMW PCI Express Capability Register accessors (kabi).\n- kabi: Adjust trace_iterator.wait_index (git-fixes).\n- kconfig: fix infinite loop when expanding a macro at the end of file (git-fixes).\n- kernel-binary: Fix i386 build Fixes: 89eaf4cdce05 (\u0027rpm templates: Move macro definitions below buildrequires\u0027)\n- kernel-binary: Move build script to the end All other spec templates have the build script at the end, only kernel-binary has it in the middle. Align with the other templates.\n- kernel-binary: certs: Avoid trailing space\n- kernel-binary: vdso: fix filelist for non-usrmerged kernel Fixes: a6ad8af207e6 (\u0027rpm templates: Always define usrmerged\u0027)\n- kprobes: Fix double free of kretprobe_holder (bsc#1220901).\n- kvm: s390: only deliver the set service event bits (git-fixes bsc#1221631).\n- leds: aw2013: Unlock mutex before destroying it (git-fixes).\n- lib/cmdline: Fix an invalid format specifier in an assertion msg (git-fixes).\n- libnvdimm/of_pmem: Use devm_kstrdup instead of kstrdup and check its return value (git-fixes).\n- libnvdimm/region: Allow setting align attribute on regions without mappings (git-fixes).\n- make nvidia Grace-Hopper TPM related drivers build-ins (bsc#1221156)\n- md/raid1: fix choose next idle in read_balance() (git-fixes).\n- md: Do not clear MD_CLOSING when the raid is about to stop (git-fixes).\n- md: do not clear MD_RECOVERY_FROZEN for new dm-raid until resume (git-fixes).\n- md: fix data corruption for raid456 when reshape restart while grow up (git-fixes).\n- media: dvb-frontends: avoid stack overflow warnings with clang (git-fixes).\n- media: edia: dvbdev: fix a use-after-free (git-fixes).\n- media: em28xx: annotate unchecked call to media_device_register() (git-fixes).\n- media: go7007: add check of return value of go7007_read_addr() (git-fixes).\n- media: go7007: fix a memleak in go7007_load_encoder (git-fixes).\n- media: imx: csc/scaler: fix v4l2_ctrl_handler memory leak (git-fixes).\n- media: pvrusb2: fix pvr2_stream_callback casts (git-fixes).\n- media: pvrusb2: fix uaf in pvr2_context_set_notify (git-fixes).\n- media: pvrusb2: remove redundant NULL check (git-fixes).\n- media: staging: ipu3-imgu: Set fields before media_entity_pads_init() (git-fixes).\n- media: sun8i-di: Fix chroma difference threshold (git-fixes).\n- media: sun8i-di: Fix coefficient writes (git-fixes).\n- media: sun8i-di: Fix power on/off sequences (git-fixes).\n- media: tc358743: register v4l2 async device only after successful setup (git-fixes).\n- media: ttpci: fix two memleaks in budget_av_attach (git-fixes).\n- media: usbtv: Remove useless locks in usbtv_video_free() (git-fixes).\n- media: v4l2-mem2mem: fix a memleak in v4l2_m2m_register_entity (git-fixes).\n- media: v4l2-tpg: fix some memleaks in tpg_alloc (git-fixes).\n- media: xc4000: Fix atomicity violation in xc4000_get_frequency (git-fixes).\n- mfd: altera-sysmgr: Call of_node_put() only when of_parse_phandle() takes a ref (git-fixes).\n- mfd: syscon: Call of_node_put() only when of_parse_phandle() takes a ref (git-fixes).\n- mm,page_owner: Defer enablement of static branch (bsc#1222366).\n- mm,page_owner: Fix accounting of pages when migrating (bsc#1222366).\n- mm,page_owner: Fix printing of stack records (bsc#1222366).\n- mm,page_owner: Fix refcount imbalance (bsc#1222366).\n- mm,page_owner: Update metadata for tail pages (bsc#1222366).\n- mm,page_owner: check for null stack_record before bumping its refcount (bsc#1222366).\n- mm,page_owner: drop unnecessary check (bsc#1222366).\n- mm,page_owner: fix recursion (bsc#1222366).\n- mm/vmalloc: huge vmalloc backing pages should be split rather than compound (bsc#1217829).\n- mmc: core: Avoid negative index with array access (git-fixes).\n- mmc: core: Fix switch on gp3 partition (git-fixes).\n- mmc: core: Initialize mmc_blk_ioc_data (git-fixes).\n- mmc: mmci: stm32: fix DMA API overlapping mappings warning (git-fixes).\n- mmc: mmci: stm32: use a buffer for unaligned DMA requests (git-fixes).\n- mmc: tmio: avoid concurrent runs of mmc_request_done() (git-fixes).\n- mmc: wmt-sdmmc: remove an incorrect release_mem_region() call in the .remove function (git-fixes).\n- mtd: maps: physmap-core: fix flash size larger than 32-bit (git-fixes).\n- mtd: rawnand: lpc32xx_mlc: fix irq handler prototype (git-fixes).\n- mtd: rawnand: meson: fix scrambling mode value in command macro (git-fixes).\n- nd_btt: Make BTT lanes preemptible (git-fixes).\n- net/bnx2x: Prevent access to a freed page in page_pool (bsc#1215322).\n- net/x25: fix incorrect parameter validation in the x25_getsockopt() function (git-fixes).\n- net: Fix features skip in for_each_netdev_feature() (git-fixes).\n- net: lan78xx: fix runtime PM count underflow on link stop (git-fixes).\n- net: ll_temac: platform_get_resource replaced by wrong function (git-fixes).\n- net: mana: Fix Rx DMA datasize and skb_over_panic (git-fixes).\n- net: phy: fix phy_get_internal_delay accessing an empty array (git-fixes).\n- net: sunrpc: Fix an off by one in rpc_sockaddr2uaddr() (git-fixes).\n- net: usb: ax88179_178a: avoid the interface always configured as random address (git-fixes).\n- nfc: nci: Fix uninit-value in nci_dev_up and nci_ntf_packet (git-fixes).\n- nfs: avoid spurious warning of lost lock that is being unlocked (bsc#1221791).\n- nfs: fix an off by one in root_nfs_cat() (git-fixes).\n- nfs: rename nfs_client_kset to nfs_kset (git-fixes).\n- nfsd: change LISTXATTRS cookie encoding to big-endian (git-fixes).\n- nfsd: convert the callback workqueue to use delayed_work (git-fixes).\n- nfsd: do not take fi_lock in nfsd_break_deleg_cb() (git-fixes).\n- nfsd: fix file memleak on client_opens_release (git-fixes).\n- nfsd: fix liSTXATTRS returning a short list with eof=TRUE (git-fixes).\n- nfsd: fix liSTXATTRS returning more bytes than maxcount (git-fixes).\n- nfsd: fix nfsd4_listxattr_validate_cookie (git-fixes).\n- nfsd: lock_rename() needs both directories to live on the same fs (git-fixes).\n- nfsd: reschedule CB operations when backchannel rpc_clnt is shut down (git-fixes).\n- nfsd: reset cb_seq_status after NFS4ERR_DELAY (git-fixes).\n- nfsd: retransmit callbacks after client reconnects (git-fixes).\n- nfsd: use vfs setgid helper (git-fixes).\n- nfsv4.1/pnfs: Ensure we handle the error NFS4ERR_RETURNCONFLICT (git-fixes).\n- nfsv4.1: fix SP4_MACH_CRED protection for pnfs IO (git-fixes).\n- nfsv4.1: fixup use EXCHGID4_FLAG_USE_PNFS_DS for DS server (git-fixes).\n- nfsv4.1: use EXCHGID4_FLAG_USE_PNFS_DS for DS server (git-fixes).\n- nfsv4.2: fix listxattr maximum XDR buffer size (git-fixes).\n- nfsv4.2: fix nfs4_listxattr kernel BUG at mm/usercopy.c:102 (git-fixes).\n- nfsv4.2: fix wrong shrinker_id (git-fixes).\n- nfsv4: fix a nfs4_state_manager() race (git-fixes).\n- nfsv4: fix a state manager thread deadlock regression (git-fixes).\n- nilfs2: fix failure to detect DAT corruption in btree and direct mappings (git-fixes).\n- nilfs2: prevent kernel bug at submit_bh_wbc() (git-fixes).\n- nouveau/dmem: handle kcalloc() allocation failure (git-fixes).\n- nouveau: reset the bo resource bus info after an eviction (git-fixes).\n- ntfs: fix use-after-free in ntfs_ucsncmp() (bsc#1221713).\n- nvdimm/namespace: drop nested variable in create_namespace_pmem() (git-fixes).\n- nvdimm: Allow overwrite in the presence of disabled dimms (git-fixes).\n- nvdimm: Fix badblocks clear off-by-one error (git-fixes).\n- nvdimm: Fix dereference after free in register_nvdimm_pmu() (git-fixes).\n- nvdimm: Fix firmware activation deadlock scenarios (git-fixes).\n- nvdimm: Fix memleak of pmu attr_groups in unregister_nvdimm_pmu() (git-fixes).\n- nvme-fc: do not wait in vain when unloading module (git-fixes).\n- nvme: fix reconnection fail due to reserved tag allocation (git-fixes).\n- nvmet-fc: abort command when there is no binding (git-fixes).\n- nvmet-fc: avoid deadlock on delete association path (git-fixes).\n- nvmet-fc: defer cleanup using RCU properly (git-fixes).\n- nvmet-fc: hold reference on hostport match (git-fixes).\n- nvmet-fc: release reference on target port (git-fixes).\n- nvmet-fc: take ref count on tgtport before delete assoc (git-fixes).\n- nvmet-fcloop: swap the list_add_tail arguments (git-fixes).\n- nvmet-tcp: fix nvme tcp ida memory leak (git-fixes).\n- pNFS/flexfiles: Check the layout validity in ff_layout_mirror_prepare_stats (git-fixes).\n- pNFS: Fix a hang in nfs4_evict_inode() (git-fixes).\n- pNFS: Fix the pnfs block driver\u0027s calculation of layoutget size (git-fixes).\n- pci/aer: Block runtime suspend when handling errors (git-fixes).\n- pci/aer: fix rootport attribute paths in ABI docs (git-fixes).\n- pci/aspm: use RMW accessors for changing LNKCTL (git-fixes).\n- pci/dpc: Quirk PIO log size for Intel Ice Lake Root Ports (git-fixes).\n- pci/dpc: Quirk PIO log size for Intel Raptor Lake Root Ports (git-fixes).\n- pci/dpc: Quirk PIO log size for certain Intel Root Ports (git-fixes).\n- pci/dpc: print all TLP Prefixes, not just the first (git-fixes).\n- pci/msi: prevent MSI hardware interrupt number truncation (bsc#1218777)\n- pci/p2pdma: Fix a sleeping issue in a RCU read section (git-fixes).\n- pci/pm: Drain runtime-idle callbacks before driver removal (git-fixes).\n- pci: Drop pci_device_remove() test of pci_dev-\u003edriver (git-fixes).\n- pci: add locking to RMW PCI Express Capability Register accessors (git-fixes).\n- pci: dwc: endpoint: Fix advertised resizable BAR size (git-fixes).\n- pci: dwc: endpoint: Fix dw_pcie_ep_raise_msix_irq() alignment support (git-fixes).\n- pci: dwc: fix a 64bit bug in dw_pcie_ep_raise_msix_irq() (git-fixes).\n- pci: fu740: Set the number of MSI vectors (git-fixes).\n- pci: lengthen reset delay for VideoPropulsion Torrent QN16e card (git-fixes).\n- pci: make link retraining use RMW accessors for changing LNKCTL (git-fixes).\n- pci: mark 3ware-9650SE Root Port Extended Tags as broken (git-fixes).\n- pci: mediatek-gen3: Fix translation window size calculation (git-fixes).\n- pci: mediatek: Clear interrupt status before dispatching handler (git-fixes).\n- pci: qcom: enable BDF to SID translation properly (git-fixes).\n- pci: qcom: use DWC helpers for modifying the read-only DBI registers (git-fixes).\n- pci: rockchip: Do not advertise MSI-X in PCIe capabilities (git-fixes).\n- pci: rockchip: Fix window mapping and address translation for endpoint (git-fixes).\n- pci: rockchip: Use 64-bit mask on MSI 64-bit PCI address (git-fixes).\n- pci: switchtec: Fix an error handling path in switchtec_pci_probe() (git-fixes).\n- pci_iounmap(): Fix MMIO mapping leak (git-fixes).\n- pinctrl: mediatek: Drop bogus slew rate register range for MT8192 (git-fixes).\n- platform/mellanox: mlxreg-hotplug: Remove redundant NULL-check (git-fixes).\n- pm: suspend: Set mem_sleep_current during kernel command line setup (git-fixes).\n- powerpc/64s: POWER10 CPU Kconfig build option (bsc#1194869).\n- powerpc/boot: Disable power10 features after BOOTAFLAGS assignment (bsc#1194869).\n- powerpc/boot: Fix boot wrapper code generation with CONFIG_POWER10_CPU (bsc#1194869).\n- powerpc/lib/sstep: Do not use __{get/put}_user() on kernel addresses (bsc#1194869).\n- powerpc/lib/sstep: Remove unneeded #ifdef __powerpc64__ (bsc#1194869).\n- powerpc/lib/sstep: Use l1_dcache_bytes() instead of opencoding (bsc#1194869).\n- powerpc/lib/sstep: use truncate_if_32bit() (bsc#1194869).\n- powerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV (bsc#1220492 ltc#205270).\n- powerpc/pseries/iommu: LPAR panics when rebooted with a frozen PE (bsc#1222011 ltc#205900).\n- powerpc/pseries: Fix potential memleak in papr_get_attr() (bsc#1200465 ltc#197256 jsc#SLE-18130 git-fixes).\n- powerpc/sstep: Use bitwise instead of arithmetic operator for flags (bsc#1194869).\n- powerpc: add compile-time support for lbarx, lharx (bsc#1194869).\n- pwm: mediatek: Update kernel doc for struct pwm_mediatek_of_data (git-fixes).\n- qedf: Do not process stag work during unload (bsc#1214852).\n- qedf: Wait for stag work during unload (bsc#1214852).\n- raid1: fix use-after-free for original bio in raid1_write_request() (bsc#1221097).\n- ras/amd/fmpm: Add debugfs interface to print record entries (jsc#PED-7619).\n- ras/amd/fmpm: Avoid NULL ptr deref in get_saved_records() (jsc#PED-7619).\n- ras/amd/fmpm: Fix build when debugfs is not enabled (jsc#PED-7619).\n- ras/amd/fmpm: Fix off by one when unwinding on error (jsc#PED-7619).\n- ras/amd/fmpm: Safely handle saved records of various sizes (jsc#PED-7619).\n- ras/amd/fmpm: Save SPA values (jsc#PED-7619).\n- ras: Avoid build errors when CONFIG_DEBUG_FS=n (git-fixes).\n- ras: Avoid build errors when CONFIG_DEBUG_FS=n (jsc#PED-7619).\n- ras: export helper to get ras_debugfs_dir (jsc#PED-7619).\n- rdma/cm: add timeout to cm_destroy_id wait (git-fixes)\n- rdma/device: Fix a race between mad_client and cm_client init (git-fixes)\n- rdma/hns: fix mis-modifying default congestion control algorithm (git-fixes)\n- rdma/ipoib: Fix error code return in ipoib_mcast_join (git-fixes)\n- rdma/irdma: Remove duplicate assignment (git-fixes)\n- rdma/mana_ib: Fix bug in creation of dma regions (git-fixes).\n- rdma/mlx5: fix fortify source warning while accessing Eth segment (git-fixes)\n- rdma/mlx5: relax DEVX access upon modify commands (git-fixes)\n- rdma/rtrs-clt: Check strnlen return len in sysfs mpath_policy_store() (git-fixes)\n- rdma/srpt: do not register event handler until srpt device is fully setup (git-fixes)\n- ring-buffer: Do not set shortest_full when full target is hit (git-fixes).\n- ring-buffer: Fix full_waiters_pending in poll (git-fixes).\n- ring-buffer: Fix resetting of shortest_full (git-fixes).\n- ring-buffer: Fix waking up ring buffer readers (git-fixes).\n- ring-buffer: Make wake once of ring_buffer_wait() more robust (git-fixes).\n- ring-buffer: Use wait_event_interruptible() in ring_buffer_wait() (git-fixes).\n- rtc: mt6397: select IRQ_DOMAIN instead of depending on it (git-fixes).\n- s390/pai: fix attr_event_free upper limit for pai device drivers (git-fixes bsc#1221633).\n- s390/vfio-ap: realize the VFIO_DEVICE_GET_IRQ_INFO ioctl (bsc#1205316).\n- s390/vfio-ap: realize the VFIO_DEVICE_SET_IRQS ioctl (bsc#1205316).\n- s390/vfio-ap: wire in the vfio_device_ops request callback (bsc#1205316).\n- s390/vtime: fix average steal time calculation (git-fixes bsc#1221951).\n- sched/rt: Disallow writing invalid values to sched_rt_period_us (bsc#1220176).\n- sched/rt: sysctl_sched_rr_timeslice show default timeslice after reset (bsc#1220176).\n- scsi: lpfc: Copyright updates for 14.4.0.1 patches (bsc#1221777).\n- scsi: lpfc: Correct size for cmdwqe/rspwqe for memset() (bsc#1221777).\n- scsi: lpfc: Correct size for wqe for memset() (bsc#1221777).\n- scsi: lpfc: Define lpfc_dmabuf type for ctx_buf ptr (bsc#1221777).\n- scsi: lpfc: Define lpfc_nodelist type for ctx_ndlp ptr (bsc#1221777).\n- scsi: lpfc: Define types in a union for generic void *context3 ptr (bsc#1221777).\n- scsi: lpfc: Move NPIV\u0027s transport unregistration to after resource clean up (bsc#1221777).\n- scsi: lpfc: Release hbalock before calling lpfc_worker_wake_up() (bsc#1221777).\n- scsi: lpfc: Remove IRQF_ONESHOT flag from threaded IRQ handling (bsc#1221777 bsc#1217959).\n- scsi: lpfc: Remove unnecessary log message in queuecommand path (bsc#1221777).\n- scsi: lpfc: Replace hbalock with ndlp lock in lpfc_nvme_unregister_port() (bsc#1221777).\n- scsi: lpfc: Update lpfc version to 14.4.0.1 (bsc#1221777).\n- scsi: lpfc: Update lpfc_ramp_down_queue_handler() logic (bsc#1221777).\n- scsi: lpfc: Use a dedicated lock for ras_fwlog state (bsc#1221777).\n- scsi: qedf: Remove set but unused variable \u0027page\u0027 (bsc#1214852).\n- scsi: qedf: Remove unused \u0027num_handled\u0027 variable (bsc#1214852).\n- scsi: qedf: Remove unused declaration (bsc#1214852).\n- scsi: qla2xxx: Change debug message during driver unload (bsc1221816).\n- scsi: qla2xxx: Delay I/O Abort on PCI error (bsc1221816).\n- scsi: qla2xxx: Fix N2N stuck connection (bsc1221816).\n- scsi: qla2xxx: Fix command flush on cable pull (bsc1221816).\n- scsi: qla2xxx: Fix double free of fcport (bsc1221816).\n- scsi: qla2xxx: Fix double free of the ha-\u003evp_map pointer (bsc1221816).\n- scsi: qla2xxx: NVME|FCP prefer flag not being honored (bsc1221816).\n- scsi: qla2xxx: Prevent command send on chip reset (bsc1221816).\n- scsi: qla2xxx: Split FCE|EFT trace control (bsc1221816).\n- scsi: qla2xxx: Update manufacturer detail (bsc1221816).\n- scsi: qla2xxx: Update version to 10.02.09.200-k (bsc1221816).\n- scsi: storvsc: Fix ring buffer size calculation (git-fixes).\n- scsi: target: core: Silence the message about unknown VPD pages (bsc#1221252).\n- selftests/bpf: add generic BPF program tester-loader (bsc#1222033).\n- serial: 8250_exar: Do not remove GPIO device on suspend (git-fixes).\n- serial: max310x: fix syntax error in IRQ error message (git-fixes).\n- slimbus: core: Remove usage of the deprecated ida_simple_xx() API (git-fixes).\n- soc: fsl: qbman: Always disable interrupts when taking cgr_lock (git-fixes).\n- spi: lm70llp: fix links in doc and comments (git-fixes).\n- spi: spi-mt65xx: Fix NULL pointer access in interrupt handler (git-fixes).\n- sr9800: Add check for usbnet_get_endpoints (git-fixes).\n- stackdepot: rename pool_index to pool_index_plus_1 (git-fixes).\n- staging: vc04_services: fix information leak in create_component() (git-fixes).\n- sunrpc: Add an IS_ERR() check back to where it was (git-fixes).\n- sunrpc: ECONNRESET might require a rebind (git-fixes).\n- sunrpc: Fix RPC client cleaned up the freed pipefs dentries (git-fixes).\n- sunrpc: Fix a suspicious RCU usage warning (git-fixes).\n- sunrpc: fix a memleak in gss_import_v2_context (git-fixes).\n- sunrpc: fix some memleaks in gssx_dec_option_array (git-fixes).\n- svcrdma: Drop connection after an RDMA Read error (git-fixes).\n- tracing/ring-buffer: Fix wait_on_pipe() race (git-fixes).\n- tracing: Have saved_cmdlines arrays all in one allocation (git-fixes).\n- tracing: Remove precision vsnprintf() check from print event (git-fixes).\n- tracing: Use .flush() call to wake up readers (git-fixes).\n- tty: n_gsm: require CAP_NET_ADMIN to attach N_GSM0710 ldisc (bsc#1222619).\n- tty: serial: fsl_lpuart: avoid idle preamble pending if CTS is enabled (git-fixes).\n- tty: serial: samsung: fix tx_empty() to return TIOCSER_TEMT (git-fixes).\n- tty: vt: fix 20 vs 0x20 typo in EScsiignore (git-fixes).\n- ubifs: Queue up space reservation tasks if retrying many times (git-fixes).\n- ubifs: Remove unreachable code in dbg_check_ltab_lnum (git-fixes).\n- ubifs: Set page uptodate in the correct place (git-fixes).\n- ubifs: dbg_check_idx_size: Fix kmemleak if loading znode failed (git-fixes).\n- ubifs: fix sort function prototype (git-fixes).\n- usb: audio-v2: Correct comments for struct uac_clock_selector_descriptor (git-fixes).\n- usb: cdc-wdm: close race between read and workqueue (git-fixes).\n- usb: core: Fix deadlock in usb_deauthorize_interface() (git-fixes).\n- usb: dwc2: gadget: Fix exiting from clock gating (git-fixes).\n- usb: dwc2: gadget: LPM flow fix (git-fixes).\n- usb: dwc2: host: Fix ISOC flow in DDMA mode (git-fixes).\n- usb: dwc2: host: Fix hibernation flow (git-fixes).\n- usb: dwc2: host: Fix remote wakeup from hibernation (git-fixes).\n- usb: dwc3: Properly set system wakeup (git-fixes).\n- usb: gadget: ncm: Fix handling of zero block length packets (git-fixes).\n- usb: gadget: net2272: Use irqflags in the call to net2272_probe_fin (git-fixes).\n- usb: port: Do not try to peer unused USB ports based on location (git-fixes).\n- usb: typec: Return size of buffer if pd_set operation succeeds (git-fixes).\n- usb: typec: ucsi: Check for notifications after init (git-fixes).\n- usb: typec: ucsi: Clean up UCSI_CABLE_PROP macros (git-fixes).\n- usb: typec: ucsi: Clear EVENT_PENDING under PPM lock (git-fixes).\n- usb: usb-storage: Prevent divide-by-0 error in isd200_ata_command (git-fixes).\n- usb: xhci: Add error handling in xhci_map_urb_for_dma (git-fixes).\n- vboxsf: Avoid an spurious warning if load_nls_xxx() fails (git-fixes).\n- vdpa/mlx5: Allow CVQ size changes (git-fixes).\n- vt: fix unicode buffer corruption when deleting characters (git-fixes).\n- watchdog: stm32_iwdg: initialize default timeout (git-fixes).\n- wifi: ath10k: fix NULL pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() (git-fixes).\n- wifi: ath11k: decrease MHI channel buffer length to 8KB (bsc#1207948).\n- wifi: ath11k: initialize rx_mcs_80 and rx_mcs_160 before use (git-fixes).\n- wifi: ath9k: delay all of ath9k_wmi_event_tasklet() until init is complete (git-fixes).\n- wifi: b43: Disable QoS for bcm4331 (git-fixes).\n- wifi: b43: Stop correct queue in DMA worker when QoS is disabled (git-fixes).\n- wifi: b43: Stop/wake correct queue in DMA Tx path when QoS is disabled (git-fixes).\n- wifi: b43: Stop/wake correct queue in PIO Tx path when QoS is disabled (git-fixes).\n- wifi: brcmfmac: fix copyright year mentioned in platform_data header (git-fixes).\n- wifi: brcmsmac: avoid function pointer casts (git-fixes).\n- wifi: iwlwifi: dbg-tlv: ensure NUL termination (git-fixes).\n- wifi: iwlwifi: fix EWRD table validity check (git-fixes).\n- wifi: iwlwifi: fw: do not always use FW dump trig (git-fixes).\n- wifi: iwlwifi: mvm: do not set replay counters to 0xff (git-fixes).\n- wifi: iwlwifi: mvm: report beacon protection failures (git-fixes).\n- wifi: iwlwifi: mvm: rfi: fix potential response leaks (git-fixes).\n- wifi: iwlwifi: mvm: use FW rate for non-data only on new devices (git-fixes).\n- wifi: libertas: fix some memleaks in lbs_allocate_cmd_buffer() (git-fixes).\n- wifi: mwifiex: debugfs: Drop unnecessary error check for debugfs_create_dir() (git-fixes).\n- wifi: rtl8xxxu: add cancel_work_sync() for c2hcmd_work (git-fixes).\n- wifi: rtw88: 8821c: Fix false alarm count (git-fixes).\n- wifi: wilc1000: fix RCU usage in connect path (git-fixes).\n- wifi: wilc1000: fix declarations ordering (stable-fixes).\n- wifi: wilc1000: fix multi-vif management when deleting a vif (git-fixes).\n- wifi: wilc1000: prevent use-after-free on vif when cleaning up all interfaces (git-fixes).\n- x86/CPU/AMD: Update the Zenbleed microcode revisions (git-fixes).\n- x86/bugs: Fix the SRSO mitigation on Zen3/4 (git-fixes).\n- x86/fpu: Keep xfd_state in sync with MSR_IA32_XFD (git-fixes).\n- x86/xen: Add some null pointer checking to smp.c (git-fixes).\n- x86/xen: add CPU dependencies for 32-bit build (git-fixes).\n- x86/xen: fix percpu vcpu_info allocation (git-fixes).\n- xen-netback: properly sync TX responses (git-fixes).\n- xen-netfront: Add missing skb_mark_for_recycle (git-fixes).\n- xen/gntdev: Fix the abuse of underlying struct page in DMA-buf import (git-fixes).\n- xen/xenbus: document will_handle argument for xenbus_watch_path() (git-fixes).\n- xhci: handle isoc Babble and Buffer Overrun events properly (git-fixes).\n- xhci: process isoc TD properly when there was a transaction error mid TD (git-fixes).\n", "title": "Description of the patch" }, { "category": "details", "text": "SUSE-2024-1490,SUSE-SLE-Module-Public-Cloud-15-SP5-2024-1490,openSUSE-SLE-15.5-2024-1490", "title": "Patchnames" }, { "category": "legal_disclaimer", "text": "CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).", "title": "Terms of use" } ], "publisher": { "category": "vendor", "contact_details": "https://www.suse.com/support/security/contact/", "name": "SUSE Product Security Team", "namespace": "https://www.suse.com/" }, "references": [ { "category": "external", "summary": "SUSE ratings", "url": "https://www.suse.com/support/security/rating/" }, { "category": "self", "summary": "URL of this CSAF notice", "url": "https://ftp.suse.com/pub/projects/security/csaf/suse-su-2024_1490-1.json" }, { "category": "self", "summary": "URL for SUSE-SU-2024:1490-1", "url": "https://www.suse.com/support/update/announcement/2024/suse-su-20241490-1/" }, { "category": "self", "summary": "E-Mail link for SUSE-SU-2024:1490-1", "url": "https://lists.suse.com/pipermail/sle-updates/2024-May/035140.html" }, { "category": "self", "summary": "SUSE Bug 1177529", "url": "https://bugzilla.suse.com/1177529" }, { "category": "self", "summary": "SUSE Bug 1192145", "url": "https://bugzilla.suse.com/1192145" }, { "category": "self", "summary": "SUSE Bug 1194869", "url": "https://bugzilla.suse.com/1194869" }, { "category": "self", "summary": "SUSE Bug 1200465", "url": "https://bugzilla.suse.com/1200465" }, { "category": "self", "summary": "SUSE Bug 1205316", "url": "https://bugzilla.suse.com/1205316" }, { "category": "self", "summary": "SUSE Bug 1207948", "url": "https://bugzilla.suse.com/1207948" }, { "category": "self", "summary": "SUSE Bug 1209635", "url": "https://bugzilla.suse.com/1209635" }, { "category": "self", "summary": "SUSE Bug 1209657", "url": "https://bugzilla.suse.com/1209657" }, { "category": "self", "summary": "SUSE Bug 1212514", "url": "https://bugzilla.suse.com/1212514" }, { "category": "self", "summary": "SUSE Bug 1213456", "url": "https://bugzilla.suse.com/1213456" }, { "category": "self", "summary": "SUSE Bug 1214852", "url": "https://bugzilla.suse.com/1214852" }, { "category": "self", "summary": "SUSE Bug 1215221", "url": "https://bugzilla.suse.com/1215221" }, { "category": "self", "summary": "SUSE Bug 1215322", "url": "https://bugzilla.suse.com/1215322" }, { "category": "self", "summary": "SUSE Bug 1217339", "url": "https://bugzilla.suse.com/1217339" }, { "category": "self", "summary": "SUSE Bug 1217829", "url": "https://bugzilla.suse.com/1217829" }, { "category": "self", "summary": "SUSE Bug 1217959", "url": "https://bugzilla.suse.com/1217959" }, { "category": "self", "summary": "SUSE Bug 1217987", "url": "https://bugzilla.suse.com/1217987" }, { "category": "self", "summary": "SUSE Bug 1217988", "url": "https://bugzilla.suse.com/1217988" }, { "category": "self", "summary": "SUSE Bug 1217989", "url": "https://bugzilla.suse.com/1217989" }, { "category": "self", "summary": "SUSE Bug 1218321", "url": "https://bugzilla.suse.com/1218321" }, { "category": "self", "summary": "SUSE Bug 1218336", "url": "https://bugzilla.suse.com/1218336" }, { "category": "self", "summary": "SUSE Bug 1218479", "url": "https://bugzilla.suse.com/1218479" }, { "category": "self", "summary": "SUSE Bug 1218643", "url": "https://bugzilla.suse.com/1218643" }, { "category": "self", "summary": "SUSE Bug 1218777", "url": "https://bugzilla.suse.com/1218777" }, { "category": "self", "summary": "SUSE Bug 1219126", "url": "https://bugzilla.suse.com/1219126" }, { "category": "self", "summary": "SUSE Bug 1219169", "url": "https://bugzilla.suse.com/1219169" }, { "category": "self", "summary": "SUSE Bug 1219170", "url": "https://bugzilla.suse.com/1219170" }, { "category": "self", "summary": "SUSE Bug 1219264", "url": "https://bugzilla.suse.com/1219264" }, { "category": "self", "summary": "SUSE Bug 1219834", "url": "https://bugzilla.suse.com/1219834" }, { "category": "self", "summary": "SUSE Bug 1220114", "url": "https://bugzilla.suse.com/1220114" }, { "category": "self", "summary": "SUSE Bug 1220176", "url": "https://bugzilla.suse.com/1220176" }, { "category": "self", "summary": "SUSE Bug 1220237", "url": "https://bugzilla.suse.com/1220237" }, { "category": "self", "summary": "SUSE Bug 1220251", "url": "https://bugzilla.suse.com/1220251" }, { "category": "self", "summary": "SUSE Bug 1220320", "url": "https://bugzilla.suse.com/1220320" }, { "category": "self", "summary": "SUSE Bug 1220337", "url": "https://bugzilla.suse.com/1220337" }, { "category": "self", "summary": "SUSE Bug 1220340", "url": "https://bugzilla.suse.com/1220340" }, { "category": "self", "summary": "SUSE Bug 1220365", "url": "https://bugzilla.suse.com/1220365" }, { "category": "self", "summary": "SUSE Bug 1220366", "url": "https://bugzilla.suse.com/1220366" }, { "category": "self", "summary": "SUSE Bug 1220398", "url": "https://bugzilla.suse.com/1220398" }, { "category": "self", "summary": "SUSE Bug 1220411", "url": "https://bugzilla.suse.com/1220411" }, { "category": "self", "summary": "SUSE Bug 1220413", "url": "https://bugzilla.suse.com/1220413" }, { "category": "self", "summary": "SUSE Bug 1220439", "url": "https://bugzilla.suse.com/1220439" }, { "category": "self", "summary": "SUSE Bug 1220443", "url": "https://bugzilla.suse.com/1220443" }, { "category": "self", "summary": "SUSE Bug 1220445", "url": "https://bugzilla.suse.com/1220445" }, { "category": "self", "summary": "SUSE Bug 1220466", "url": "https://bugzilla.suse.com/1220466" }, { "category": "self", "summary": "SUSE Bug 1220478", "url": "https://bugzilla.suse.com/1220478" }, { "category": "self", "summary": "SUSE Bug 1220482", "url": "https://bugzilla.suse.com/1220482" }, { "category": "self", "summary": "SUSE Bug 1220484", "url": "https://bugzilla.suse.com/1220484" }, { "category": "self", "summary": "SUSE Bug 1220486", "url": "https://bugzilla.suse.com/1220486" }, { "category": "self", "summary": "SUSE Bug 1220487", "url": "https://bugzilla.suse.com/1220487" }, { "category": "self", "summary": "SUSE Bug 1220492", "url": "https://bugzilla.suse.com/1220492" }, { "category": "self", "summary": "SUSE Bug 1220703", "url": "https://bugzilla.suse.com/1220703" }, { "category": "self", "summary": "SUSE Bug 1220775", "url": "https://bugzilla.suse.com/1220775" }, { "category": "self", "summary": "SUSE Bug 1220790", "url": "https://bugzilla.suse.com/1220790" }, { "category": "self", "summary": "SUSE Bug 1220797", "url": "https://bugzilla.suse.com/1220797" }, { "category": "self", "summary": "SUSE Bug 1220831", "url": "https://bugzilla.suse.com/1220831" }, { "category": "self", "summary": "SUSE Bug 1220833", "url": "https://bugzilla.suse.com/1220833" }, { "category": "self", "summary": "SUSE Bug 1220836", "url": "https://bugzilla.suse.com/1220836" }, { "category": "self", "summary": "SUSE Bug 1220839", "url": "https://bugzilla.suse.com/1220839" }, { "category": "self", "summary": "SUSE Bug 1220840", "url": "https://bugzilla.suse.com/1220840" }, { "category": "self", "summary": "SUSE Bug 1220843", "url": "https://bugzilla.suse.com/1220843" }, { "category": "self", "summary": "SUSE Bug 1220870", "url": "https://bugzilla.suse.com/1220870" }, { "category": "self", "summary": "SUSE Bug 1220871", "url": "https://bugzilla.suse.com/1220871" }, { "category": "self", "summary": "SUSE Bug 1220872", "url": "https://bugzilla.suse.com/1220872" }, { "category": "self", "summary": "SUSE Bug 1220878", "url": "https://bugzilla.suse.com/1220878" }, { "category": "self", "summary": "SUSE Bug 1220879", "url": "https://bugzilla.suse.com/1220879" }, { "category": "self", "summary": "SUSE Bug 1220883", "url": "https://bugzilla.suse.com/1220883" }, { "category": "self", "summary": "SUSE Bug 1220885", "url": "https://bugzilla.suse.com/1220885" }, { "category": "self", "summary": "SUSE Bug 1220887", "url": "https://bugzilla.suse.com/1220887" }, { "category": "self", "summary": "SUSE Bug 1220898", "url": "https://bugzilla.suse.com/1220898" }, { "category": "self", "summary": "SUSE Bug 1220901", "url": "https://bugzilla.suse.com/1220901" }, { "category": "self", "summary": "SUSE Bug 1220915", "url": "https://bugzilla.suse.com/1220915" }, { "category": "self", "summary": "SUSE Bug 1220918", "url": "https://bugzilla.suse.com/1220918" }, { "category": "self", "summary": "SUSE Bug 1220920", "url": "https://bugzilla.suse.com/1220920" }, { "category": "self", "summary": "SUSE Bug 1220921", "url": "https://bugzilla.suse.com/1220921" }, { "category": "self", "summary": "SUSE Bug 1220926", "url": "https://bugzilla.suse.com/1220926" }, { "category": "self", "summary": "SUSE Bug 1220927", "url": "https://bugzilla.suse.com/1220927" }, { "category": "self", "summary": "SUSE Bug 1220929", "url": "https://bugzilla.suse.com/1220929" }, { "category": "self", "summary": "SUSE Bug 1220932", "url": "https://bugzilla.suse.com/1220932" }, { "category": "self", "summary": "SUSE Bug 1220935", "url": "https://bugzilla.suse.com/1220935" }, { "category": "self", "summary": "SUSE Bug 1220937", "url": "https://bugzilla.suse.com/1220937" }, { "category": "self", "summary": "SUSE Bug 1220938", "url": "https://bugzilla.suse.com/1220938" }, { "category": "self", "summary": "SUSE Bug 1220940", "url": "https://bugzilla.suse.com/1220940" }, { "category": "self", "summary": "SUSE Bug 1220954", "url": "https://bugzilla.suse.com/1220954" }, { "category": "self", "summary": "SUSE Bug 1220955", "url": "https://bugzilla.suse.com/1220955" }, { "category": "self", "summary": "SUSE Bug 1220959", "url": "https://bugzilla.suse.com/1220959" }, { "category": "self", "summary": "SUSE Bug 1220960", "url": "https://bugzilla.suse.com/1220960" }, { "category": "self", "summary": "SUSE Bug 1220961", "url": "https://bugzilla.suse.com/1220961" }, { "category": "self", "summary": "SUSE Bug 1220965", "url": "https://bugzilla.suse.com/1220965" }, { "category": "self", "summary": "SUSE Bug 1220969", "url": "https://bugzilla.suse.com/1220969" }, { "category": "self", "summary": "SUSE Bug 1220978", "url": "https://bugzilla.suse.com/1220978" }, { "category": "self", "summary": "SUSE Bug 1220979", "url": "https://bugzilla.suse.com/1220979" }, { "category": "self", "summary": "SUSE Bug 1220981", "url": "https://bugzilla.suse.com/1220981" }, { "category": "self", "summary": "SUSE Bug 1220982", "url": "https://bugzilla.suse.com/1220982" }, { "category": "self", "summary": "SUSE Bug 1220983", "url": "https://bugzilla.suse.com/1220983" }, { "category": "self", "summary": "SUSE Bug 1220985", "url": "https://bugzilla.suse.com/1220985" }, { "category": "self", "summary": "SUSE Bug 1220986", "url": "https://bugzilla.suse.com/1220986" }, { "category": "self", "summary": "SUSE Bug 1220987", "url": "https://bugzilla.suse.com/1220987" }, { "category": "self", "summary": "SUSE Bug 1220989", "url": "https://bugzilla.suse.com/1220989" }, { "category": "self", "summary": "SUSE Bug 1220990", "url": "https://bugzilla.suse.com/1220990" }, { "category": "self", "summary": "SUSE Bug 1221009", "url": "https://bugzilla.suse.com/1221009" }, { "category": "self", "summary": "SUSE Bug 1221012", "url": "https://bugzilla.suse.com/1221012" }, { "category": "self", "summary": "SUSE Bug 1221015", "url": "https://bugzilla.suse.com/1221015" }, { "category": "self", "summary": "SUSE Bug 1221022", "url": "https://bugzilla.suse.com/1221022" }, { "category": "self", "summary": "SUSE Bug 1221039", "url": "https://bugzilla.suse.com/1221039" }, { "category": "self", "summary": "SUSE Bug 1221040", "url": "https://bugzilla.suse.com/1221040" }, { "category": "self", "summary": "SUSE Bug 1221044", "url": "https://bugzilla.suse.com/1221044" }, { "category": "self", "summary": "SUSE Bug 1221045", "url": "https://bugzilla.suse.com/1221045" }, { "category": "self", "summary": "SUSE Bug 1221046", "url": "https://bugzilla.suse.com/1221046" }, { "category": "self", "summary": "SUSE Bug 1221048", "url": "https://bugzilla.suse.com/1221048" }, { "category": "self", "summary": "SUSE Bug 1221055", "url": "https://bugzilla.suse.com/1221055" }, { "category": "self", "summary": "SUSE Bug 1221056", "url": "https://bugzilla.suse.com/1221056" }, { "category": "self", "summary": "SUSE Bug 1221058", "url": "https://bugzilla.suse.com/1221058" }, { "category": "self", "summary": "SUSE Bug 1221060", "url": "https://bugzilla.suse.com/1221060" }, { "category": "self", "summary": "SUSE Bug 1221061", "url": "https://bugzilla.suse.com/1221061" }, { "category": "self", "summary": "SUSE Bug 1221062", "url": "https://bugzilla.suse.com/1221062" }, { "category": "self", "summary": "SUSE Bug 1221066", "url": "https://bugzilla.suse.com/1221066" }, { "category": "self", "summary": "SUSE Bug 1221067", "url": "https://bugzilla.suse.com/1221067" }, { "category": "self", "summary": "SUSE Bug 1221068", "url": "https://bugzilla.suse.com/1221068" }, { "category": "self", "summary": "SUSE Bug 1221069", "url": "https://bugzilla.suse.com/1221069" }, { "category": "self", "summary": "SUSE Bug 1221070", "url": "https://bugzilla.suse.com/1221070" }, { "category": "self", "summary": "SUSE Bug 1221071", "url": "https://bugzilla.suse.com/1221071" }, { "category": "self", "summary": "SUSE Bug 1221077", "url": "https://bugzilla.suse.com/1221077" }, { "category": "self", "summary": "SUSE Bug 1221082", "url": "https://bugzilla.suse.com/1221082" }, { "category": "self", "summary": "SUSE Bug 1221090", "url": "https://bugzilla.suse.com/1221090" }, { "category": "self", "summary": "SUSE Bug 1221097", "url": "https://bugzilla.suse.com/1221097" }, { "category": "self", "summary": "SUSE Bug 1221156", "url": "https://bugzilla.suse.com/1221156" }, { "category": "self", "summary": "SUSE Bug 1221162", "url": "https://bugzilla.suse.com/1221162" }, { "category": "self", "summary": "SUSE Bug 1221252", "url": "https://bugzilla.suse.com/1221252" }, { "category": "self", "summary": "SUSE Bug 1221273", "url": "https://bugzilla.suse.com/1221273" }, { "category": "self", "summary": "SUSE Bug 1221274", "url": "https://bugzilla.suse.com/1221274" }, { "category": "self", "summary": "SUSE Bug 1221276", "url": "https://bugzilla.suse.com/1221276" }, { "category": "self", "summary": "SUSE Bug 1221277", "url": "https://bugzilla.suse.com/1221277" }, { "category": "self", "summary": "SUSE Bug 1221291", "url": "https://bugzilla.suse.com/1221291" }, { "category": "self", "summary": "SUSE Bug 1221293", "url": "https://bugzilla.suse.com/1221293" }, { "category": "self", "summary": "SUSE Bug 1221298", "url": "https://bugzilla.suse.com/1221298" }, { "category": "self", "summary": "SUSE Bug 1221337", "url": "https://bugzilla.suse.com/1221337" }, { "category": "self", "summary": "SUSE Bug 1221338", "url": "https://bugzilla.suse.com/1221338" }, { "category": "self", "summary": "SUSE Bug 1221375", "url": "https://bugzilla.suse.com/1221375" }, { "category": "self", "summary": "SUSE Bug 1221379", "url": "https://bugzilla.suse.com/1221379" }, { "category": "self", "summary": "SUSE Bug 1221551", "url": "https://bugzilla.suse.com/1221551" }, { "category": "self", "summary": "SUSE Bug 1221553", "url": "https://bugzilla.suse.com/1221553" }, { "category": "self", "summary": "SUSE Bug 1221613", "url": "https://bugzilla.suse.com/1221613" }, { "category": "self", "summary": "SUSE Bug 1221614", "url": "https://bugzilla.suse.com/1221614" }, { "category": "self", "summary": "SUSE Bug 1221616", "url": "https://bugzilla.suse.com/1221616" }, { "category": "self", "summary": "SUSE Bug 1221618", "url": "https://bugzilla.suse.com/1221618" }, { "category": "self", "summary": "SUSE Bug 1221631", "url": "https://bugzilla.suse.com/1221631" }, { "category": "self", "summary": "SUSE Bug 1221633", "url": "https://bugzilla.suse.com/1221633" }, { "category": "self", "summary": "SUSE Bug 1221713", "url": "https://bugzilla.suse.com/1221713" }, { "category": "self", "summary": "SUSE Bug 1221725", "url": "https://bugzilla.suse.com/1221725" }, { "category": "self", "summary": "SUSE Bug 1221777", "url": "https://bugzilla.suse.com/1221777" }, { "category": "self", "summary": "SUSE Bug 1221791", "url": "https://bugzilla.suse.com/1221791" }, { "category": "self", "summary": "SUSE Bug 1221814", "url": "https://bugzilla.suse.com/1221814" }, { "category": "self", "summary": "SUSE Bug 1221816", "url": "https://bugzilla.suse.com/1221816" }, { "category": "self", "summary": "SUSE Bug 1221830", "url": "https://bugzilla.suse.com/1221830" }, { "category": "self", "summary": "SUSE Bug 1221951", "url": "https://bugzilla.suse.com/1221951" }, { "category": "self", "summary": "SUSE Bug 1222011", "url": "https://bugzilla.suse.com/1222011" }, { "category": "self", "summary": "SUSE Bug 1222033", "url": "https://bugzilla.suse.com/1222033" }, { "category": "self", "summary": "SUSE Bug 1222051", "url": "https://bugzilla.suse.com/1222051" }, { "category": "self", "summary": "SUSE Bug 1222056", "url": "https://bugzilla.suse.com/1222056" }, { "category": "self", "summary": "SUSE Bug 1222060", "url": "https://bugzilla.suse.com/1222060" }, { "category": "self", "summary": "SUSE Bug 1222070", "url": "https://bugzilla.suse.com/1222070" }, { "category": "self", "summary": "SUSE Bug 1222073", "url": "https://bugzilla.suse.com/1222073" }, { "category": "self", "summary": "SUSE Bug 1222117", "url": "https://bugzilla.suse.com/1222117" }, { "category": "self", "summary": "SUSE Bug 1222247", "url": "https://bugzilla.suse.com/1222247" }, { "category": "self", "summary": "SUSE Bug 1222266", "url": "https://bugzilla.suse.com/1222266" }, { "category": "self", "summary": "SUSE Bug 1222274", "url": "https://bugzilla.suse.com/1222274" }, { "category": "self", "summary": "SUSE Bug 1222291", "url": "https://bugzilla.suse.com/1222291" }, { "category": "self", "summary": "SUSE Bug 1222300", "url": "https://bugzilla.suse.com/1222300" }, { "category": "self", "summary": "SUSE Bug 1222304", "url": "https://bugzilla.suse.com/1222304" }, { "category": "self", "summary": "SUSE Bug 1222317", "url": "https://bugzilla.suse.com/1222317" }, { "category": "self", "summary": "SUSE Bug 1222331", "url": "https://bugzilla.suse.com/1222331" }, { "category": "self", "summary": "SUSE Bug 1222355", "url": "https://bugzilla.suse.com/1222355" }, { "category": "self", "summary": "SUSE Bug 1222356", "url": "https://bugzilla.suse.com/1222356" }, { "category": "self", "summary": "SUSE Bug 1222360", "url": "https://bugzilla.suse.com/1222360" }, { "category": "self", "summary": "SUSE Bug 1222366", "url": "https://bugzilla.suse.com/1222366" }, { "category": "self", "summary": "SUSE Bug 1222373", "url": "https://bugzilla.suse.com/1222373" }, { "category": "self", "summary": "SUSE Bug 1222416", "url": "https://bugzilla.suse.com/1222416" }, { "category": "self", "summary": "SUSE Bug 1222422", "url": "https://bugzilla.suse.com/1222422" }, { "category": "self", "summary": "SUSE Bug 1222427", "url": "https://bugzilla.suse.com/1222427" }, { "category": "self", "summary": "SUSE Bug 1222428", "url": "https://bugzilla.suse.com/1222428" }, { "category": "self", "summary": "SUSE Bug 1222431", "url": "https://bugzilla.suse.com/1222431" }, { "category": "self", "summary": "SUSE Bug 1222437", "url": "https://bugzilla.suse.com/1222437" }, { "category": "self", "summary": "SUSE Bug 1222445", "url": "https://bugzilla.suse.com/1222445" }, { "category": "self", "summary": "SUSE Bug 1222449", "url": "https://bugzilla.suse.com/1222449" }, { "category": "self", "summary": "SUSE Bug 1222503", "url": "https://bugzilla.suse.com/1222503" }, { "category": "self", "summary": "SUSE Bug 1222520", "url": "https://bugzilla.suse.com/1222520" }, { "category": "self", "summary": "SUSE Bug 1222536", "url": "https://bugzilla.suse.com/1222536" }, { "category": "self", "summary": "SUSE Bug 1222549", "url": "https://bugzilla.suse.com/1222549" }, { "category": "self", "summary": "SUSE Bug 1222550", "url": "https://bugzilla.suse.com/1222550" }, { "category": "self", "summary": "SUSE Bug 1222557", "url": "https://bugzilla.suse.com/1222557" }, { "category": "self", "summary": "SUSE Bug 1222585", "url": "https://bugzilla.suse.com/1222585" }, { "category": "self", "summary": "SUSE Bug 1222586", "url": "https://bugzilla.suse.com/1222586" }, { "category": "self", "summary": "SUSE Bug 1222596", "url": "https://bugzilla.suse.com/1222596" }, { "category": "self", "summary": "SUSE Bug 1222609", "url": "https://bugzilla.suse.com/1222609" }, { "category": "self", "summary": "SUSE Bug 1222610", "url": "https://bugzilla.suse.com/1222610" }, { "category": "self", "summary": "SUSE Bug 1222619", "url": "https://bugzilla.suse.com/1222619" }, { "category": "self", "summary": "SUSE Bug 1222630", "url": "https://bugzilla.suse.com/1222630" }, { "category": "self", "summary": "SUSE Bug 1222632", "url": "https://bugzilla.suse.com/1222632" }, { "category": "self", "summary": "SUSE Bug 1222660", "url": "https://bugzilla.suse.com/1222660" }, { "category": "self", "summary": "SUSE Bug 1222662", "url": "https://bugzilla.suse.com/1222662" }, { "category": "self", "summary": "SUSE Bug 1222664", "url": "https://bugzilla.suse.com/1222664" }, { "category": "self", "summary": "SUSE Bug 1222669", "url": "https://bugzilla.suse.com/1222669" }, { "category": "self", "summary": "SUSE Bug 1222677", "url": "https://bugzilla.suse.com/1222677" }, { "category": "self", "summary": "SUSE Bug 1222678", "url": "https://bugzilla.suse.com/1222678" }, { "category": "self", "summary": "SUSE Bug 1222680", "url": "https://bugzilla.suse.com/1222680" }, { "category": "self", "summary": "SUSE Bug 1222706", "url": "https://bugzilla.suse.com/1222706" }, { "category": "self", "summary": "SUSE Bug 1222720", "url": "https://bugzilla.suse.com/1222720" }, { "category": "self", "summary": "SUSE Bug 1222724", "url": "https://bugzilla.suse.com/1222724" }, { "category": "self", "summary": "SUSE Bug 1222726", "url": "https://bugzilla.suse.com/1222726" }, { "category": "self", "summary": "SUSE Bug 1222727", "url": "https://bugzilla.suse.com/1222727" }, { "category": "self", "summary": "SUSE Bug 1222764", "url": "https://bugzilla.suse.com/1222764" }, { "category": "self", "summary": "SUSE Bug 1222772", "url": "https://bugzilla.suse.com/1222772" }, { "category": "self", "summary": "SUSE Bug 1222781", "url": "https://bugzilla.suse.com/1222781" }, { "category": "self", "summary": "SUSE Bug 1222784", "url": "https://bugzilla.suse.com/1222784" }, { "category": "self", "summary": "SUSE Bug 1222798", "url": "https://bugzilla.suse.com/1222798" }, { "category": "self", "summary": "SUSE Bug 1222801", "url": "https://bugzilla.suse.com/1222801" }, { "category": "self", "summary": "SUSE Bug 1222952", "url": "https://bugzilla.suse.com/1222952" }, { "category": "self", "summary": "SUSE Bug 1223030", "url": "https://bugzilla.suse.com/1223030" }, { "category": "self", "summary": "SUSE Bug 1223067", "url": "https://bugzilla.suse.com/1223067" }, { "category": "self", "summary": "SUSE Bug 1223068", "url": "https://bugzilla.suse.com/1223068" }, { "category": "self", "summary": "SUSE CVE CVE-2021-46925 page", "url": "https://www.suse.com/security/cve/CVE-2021-46925/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-46926 page", "url": "https://www.suse.com/security/cve/CVE-2021-46926/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-46927 page", "url": "https://www.suse.com/security/cve/CVE-2021-46927/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-46929 page", "url": "https://www.suse.com/security/cve/CVE-2021-46929/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-46930 page", "url": "https://www.suse.com/security/cve/CVE-2021-46930/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-46931 page", "url": "https://www.suse.com/security/cve/CVE-2021-46931/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-46933 page", "url": "https://www.suse.com/security/cve/CVE-2021-46933/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-46936 page", "url": "https://www.suse.com/security/cve/CVE-2021-46936/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-47082 page", "url": "https://www.suse.com/security/cve/CVE-2021-47082/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-47087 page", "url": "https://www.suse.com/security/cve/CVE-2021-47087/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-47091 page", "url": "https://www.suse.com/security/cve/CVE-2021-47091/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-47093 page", "url": "https://www.suse.com/security/cve/CVE-2021-47093/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-47094 page", "url": "https://www.suse.com/security/cve/CVE-2021-47094/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-47095 page", "url": "https://www.suse.com/security/cve/CVE-2021-47095/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-47096 page", "url": "https://www.suse.com/security/cve/CVE-2021-47096/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-47097 page", "url": "https://www.suse.com/security/cve/CVE-2021-47097/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-47098 page", "url": "https://www.suse.com/security/cve/CVE-2021-47098/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-47099 page", "url": "https://www.suse.com/security/cve/CVE-2021-47099/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-47100 page", "url": "https://www.suse.com/security/cve/CVE-2021-47100/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-47101 page", "url": "https://www.suse.com/security/cve/CVE-2021-47101/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-47102 page", "url": "https://www.suse.com/security/cve/CVE-2021-47102/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-47104 page", "url": "https://www.suse.com/security/cve/CVE-2021-47104/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-47105 page", "url": "https://www.suse.com/security/cve/CVE-2021-47105/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-47107 page", "url": "https://www.suse.com/security/cve/CVE-2021-47107/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-47108 page", "url": "https://www.suse.com/security/cve/CVE-2021-47108/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-47181 page", "url": "https://www.suse.com/security/cve/CVE-2021-47181/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-47182 page", "url": "https://www.suse.com/security/cve/CVE-2021-47182/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-47183 page", "url": "https://www.suse.com/security/cve/CVE-2021-47183/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-47185 page", "url": "https://www.suse.com/security/cve/CVE-2021-47185/" }, { "category": "self", "summary": "SUSE CVE CVE-2021-47189 page", "url": "https://www.suse.com/security/cve/CVE-2021-47189/" }, { "category": "self", "summary": "SUSE CVE CVE-2022-4744 page", "url": "https://www.suse.com/security/cve/CVE-2022-4744/" }, { "category": "self", "summary": "SUSE CVE CVE-2022-48626 page", "url": "https://www.suse.com/security/cve/CVE-2022-48626/" }, { "category": "self", "summary": "SUSE CVE CVE-2022-48629 page", "url": "https://www.suse.com/security/cve/CVE-2022-48629/" }, { "category": "self", "summary": "SUSE CVE CVE-2022-48630 page", "url": "https://www.suse.com/security/cve/CVE-2022-48630/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-0160 page", "url": "https://www.suse.com/security/cve/CVE-2023-0160/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-28746 page", "url": "https://www.suse.com/security/cve/CVE-2023-28746/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-35827 page", "url": "https://www.suse.com/security/cve/CVE-2023-35827/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-4881 page", "url": "https://www.suse.com/security/cve/CVE-2023-4881/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52447 page", "url": "https://www.suse.com/security/cve/CVE-2023-52447/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52450 page", "url": "https://www.suse.com/security/cve/CVE-2023-52450/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52453 page", "url": "https://www.suse.com/security/cve/CVE-2023-52453/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52454 page", "url": "https://www.suse.com/security/cve/CVE-2023-52454/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52469 page", "url": "https://www.suse.com/security/cve/CVE-2023-52469/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52470 page", "url": "https://www.suse.com/security/cve/CVE-2023-52470/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52474 page", "url": "https://www.suse.com/security/cve/CVE-2023-52474/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52476 page", "url": "https://www.suse.com/security/cve/CVE-2023-52476/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52477 page", "url": "https://www.suse.com/security/cve/CVE-2023-52477/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52481 page", "url": "https://www.suse.com/security/cve/CVE-2023-52481/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52484 page", "url": "https://www.suse.com/security/cve/CVE-2023-52484/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52486 page", "url": "https://www.suse.com/security/cve/CVE-2023-52486/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52488 page", "url": "https://www.suse.com/security/cve/CVE-2023-52488/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52492 page", "url": "https://www.suse.com/security/cve/CVE-2023-52492/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52493 page", "url": "https://www.suse.com/security/cve/CVE-2023-52493/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52494 page", "url": "https://www.suse.com/security/cve/CVE-2023-52494/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52497 page", "url": "https://www.suse.com/security/cve/CVE-2023-52497/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52500 page", "url": "https://www.suse.com/security/cve/CVE-2023-52500/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52501 page", "url": "https://www.suse.com/security/cve/CVE-2023-52501/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52502 page", "url": "https://www.suse.com/security/cve/CVE-2023-52502/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52503 page", "url": "https://www.suse.com/security/cve/CVE-2023-52503/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52504 page", "url": "https://www.suse.com/security/cve/CVE-2023-52504/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52507 page", "url": "https://www.suse.com/security/cve/CVE-2023-52507/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52508 page", "url": "https://www.suse.com/security/cve/CVE-2023-52508/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52509 page", "url": "https://www.suse.com/security/cve/CVE-2023-52509/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52510 page", "url": "https://www.suse.com/security/cve/CVE-2023-52510/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52511 page", "url": "https://www.suse.com/security/cve/CVE-2023-52511/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52513 page", "url": "https://www.suse.com/security/cve/CVE-2023-52513/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52515 page", "url": "https://www.suse.com/security/cve/CVE-2023-52515/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52517 page", "url": "https://www.suse.com/security/cve/CVE-2023-52517/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52518 page", "url": "https://www.suse.com/security/cve/CVE-2023-52518/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52519 page", "url": "https://www.suse.com/security/cve/CVE-2023-52519/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52520 page", "url": "https://www.suse.com/security/cve/CVE-2023-52520/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52523 page", "url": "https://www.suse.com/security/cve/CVE-2023-52523/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52524 page", "url": "https://www.suse.com/security/cve/CVE-2023-52524/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52525 page", "url": "https://www.suse.com/security/cve/CVE-2023-52525/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52528 page", "url": "https://www.suse.com/security/cve/CVE-2023-52528/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52529 page", "url": "https://www.suse.com/security/cve/CVE-2023-52529/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52532 page", "url": "https://www.suse.com/security/cve/CVE-2023-52532/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52561 page", "url": "https://www.suse.com/security/cve/CVE-2023-52561/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52563 page", "url": "https://www.suse.com/security/cve/CVE-2023-52563/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52564 page", "url": "https://www.suse.com/security/cve/CVE-2023-52564/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52566 page", "url": "https://www.suse.com/security/cve/CVE-2023-52566/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52567 page", "url": "https://www.suse.com/security/cve/CVE-2023-52567/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52569 page", "url": "https://www.suse.com/security/cve/CVE-2023-52569/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52574 page", "url": "https://www.suse.com/security/cve/CVE-2023-52574/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52575 page", "url": "https://www.suse.com/security/cve/CVE-2023-52575/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52576 page", "url": "https://www.suse.com/security/cve/CVE-2023-52576/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52582 page", "url": "https://www.suse.com/security/cve/CVE-2023-52582/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52583 page", "url": "https://www.suse.com/security/cve/CVE-2023-52583/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52587 page", "url": "https://www.suse.com/security/cve/CVE-2023-52587/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52591 page", "url": "https://www.suse.com/security/cve/CVE-2023-52591/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52594 page", "url": "https://www.suse.com/security/cve/CVE-2023-52594/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52595 page", "url": "https://www.suse.com/security/cve/CVE-2023-52595/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52597 page", "url": "https://www.suse.com/security/cve/CVE-2023-52597/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52598 page", "url": "https://www.suse.com/security/cve/CVE-2023-52598/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52599 page", "url": "https://www.suse.com/security/cve/CVE-2023-52599/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52600 page", "url": "https://www.suse.com/security/cve/CVE-2023-52600/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52601 page", "url": "https://www.suse.com/security/cve/CVE-2023-52601/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52602 page", "url": "https://www.suse.com/security/cve/CVE-2023-52602/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52603 page", "url": "https://www.suse.com/security/cve/CVE-2023-52603/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52604 page", "url": "https://www.suse.com/security/cve/CVE-2023-52604/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52605 page", "url": "https://www.suse.com/security/cve/CVE-2023-52605/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52606 page", "url": "https://www.suse.com/security/cve/CVE-2023-52606/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52607 page", "url": "https://www.suse.com/security/cve/CVE-2023-52607/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52608 page", "url": "https://www.suse.com/security/cve/CVE-2023-52608/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52612 page", "url": "https://www.suse.com/security/cve/CVE-2023-52612/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52615 page", "url": "https://www.suse.com/security/cve/CVE-2023-52615/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52617 page", "url": "https://www.suse.com/security/cve/CVE-2023-52617/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52619 page", "url": "https://www.suse.com/security/cve/CVE-2023-52619/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52621 page", "url": "https://www.suse.com/security/cve/CVE-2023-52621/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52623 page", "url": "https://www.suse.com/security/cve/CVE-2023-52623/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52627 page", "url": "https://www.suse.com/security/cve/CVE-2023-52627/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52628 page", "url": "https://www.suse.com/security/cve/CVE-2023-52628/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52632 page", "url": "https://www.suse.com/security/cve/CVE-2023-52632/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52636 page", "url": "https://www.suse.com/security/cve/CVE-2023-52636/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52637 page", "url": "https://www.suse.com/security/cve/CVE-2023-52637/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-52639 page", "url": "https://www.suse.com/security/cve/CVE-2023-52639/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-6356 page", "url": "https://www.suse.com/security/cve/CVE-2023-6356/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-6535 page", "url": "https://www.suse.com/security/cve/CVE-2023-6535/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-6536 page", "url": "https://www.suse.com/security/cve/CVE-2023-6536/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-7042 page", "url": "https://www.suse.com/security/cve/CVE-2023-7042/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-7192 page", "url": "https://www.suse.com/security/cve/CVE-2023-7192/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-0841 page", "url": "https://www.suse.com/security/cve/CVE-2024-0841/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-2201 page", "url": "https://www.suse.com/security/cve/CVE-2024-2201/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-22099 page", "url": "https://www.suse.com/security/cve/CVE-2024-22099/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-23307 page", "url": "https://www.suse.com/security/cve/CVE-2024-23307/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-23850 page", "url": "https://www.suse.com/security/cve/CVE-2024-23850/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-25739 page", "url": "https://www.suse.com/security/cve/CVE-2024-25739/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-25742 page", "url": "https://www.suse.com/security/cve/CVE-2024-25742/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26599 page", "url": "https://www.suse.com/security/cve/CVE-2024-26599/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26600 page", "url": "https://www.suse.com/security/cve/CVE-2024-26600/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26602 page", "url": "https://www.suse.com/security/cve/CVE-2024-26602/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26612 page", "url": "https://www.suse.com/security/cve/CVE-2024-26612/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26614 page", "url": "https://www.suse.com/security/cve/CVE-2024-26614/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26620 page", "url": "https://www.suse.com/security/cve/CVE-2024-26620/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26627 page", "url": "https://www.suse.com/security/cve/CVE-2024-26627/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26629 page", "url": "https://www.suse.com/security/cve/CVE-2024-26629/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26642 page", "url": "https://www.suse.com/security/cve/CVE-2024-26642/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26645 page", "url": "https://www.suse.com/security/cve/CVE-2024-26645/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26646 page", "url": "https://www.suse.com/security/cve/CVE-2024-26646/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26651 page", "url": "https://www.suse.com/security/cve/CVE-2024-26651/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26654 page", "url": "https://www.suse.com/security/cve/CVE-2024-26654/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26659 page", "url": "https://www.suse.com/security/cve/CVE-2024-26659/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26660 page", "url": "https://www.suse.com/security/cve/CVE-2024-26660/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26664 page", "url": "https://www.suse.com/security/cve/CVE-2024-26664/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26667 page", "url": "https://www.suse.com/security/cve/CVE-2024-26667/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26670 page", "url": "https://www.suse.com/security/cve/CVE-2024-26670/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26680 page", "url": "https://www.suse.com/security/cve/CVE-2024-26680/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26681 page", "url": "https://www.suse.com/security/cve/CVE-2024-26681/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26684 page", "url": "https://www.suse.com/security/cve/CVE-2024-26684/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26685 page", "url": "https://www.suse.com/security/cve/CVE-2024-26685/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26689 page", "url": "https://www.suse.com/security/cve/CVE-2024-26689/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26695 page", "url": "https://www.suse.com/security/cve/CVE-2024-26695/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26696 page", "url": "https://www.suse.com/security/cve/CVE-2024-26696/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26697 page", "url": "https://www.suse.com/security/cve/CVE-2024-26697/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26704 page", "url": "https://www.suse.com/security/cve/CVE-2024-26704/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26717 page", "url": "https://www.suse.com/security/cve/CVE-2024-26717/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26718 page", "url": "https://www.suse.com/security/cve/CVE-2024-26718/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26722 page", "url": "https://www.suse.com/security/cve/CVE-2024-26722/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26727 page", "url": "https://www.suse.com/security/cve/CVE-2024-26727/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26733 page", "url": "https://www.suse.com/security/cve/CVE-2024-26733/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26736 page", "url": "https://www.suse.com/security/cve/CVE-2024-26736/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26737 page", "url": "https://www.suse.com/security/cve/CVE-2024-26737/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26743 page", "url": "https://www.suse.com/security/cve/CVE-2024-26743/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26744 page", "url": "https://www.suse.com/security/cve/CVE-2024-26744/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26745 page", "url": "https://www.suse.com/security/cve/CVE-2024-26745/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26747 page", "url": "https://www.suse.com/security/cve/CVE-2024-26747/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26749 page", "url": "https://www.suse.com/security/cve/CVE-2024-26749/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26751 page", "url": "https://www.suse.com/security/cve/CVE-2024-26751/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26754 page", "url": "https://www.suse.com/security/cve/CVE-2024-26754/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26760 page", "url": "https://www.suse.com/security/cve/CVE-2024-26760/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26763 page", "url": "https://www.suse.com/security/cve/CVE-2024-26763/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26766 page", "url": "https://www.suse.com/security/cve/CVE-2024-26766/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26769 page", "url": "https://www.suse.com/security/cve/CVE-2024-26769/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26771 page", "url": "https://www.suse.com/security/cve/CVE-2024-26771/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26776 page", "url": "https://www.suse.com/security/cve/CVE-2024-26776/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26779 page", "url": "https://www.suse.com/security/cve/CVE-2024-26779/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26787 page", "url": "https://www.suse.com/security/cve/CVE-2024-26787/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26790 page", "url": "https://www.suse.com/security/cve/CVE-2024-26790/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26793 page", "url": "https://www.suse.com/security/cve/CVE-2024-26793/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26798 page", "url": "https://www.suse.com/security/cve/CVE-2024-26798/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26805 page", "url": "https://www.suse.com/security/cve/CVE-2024-26805/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26807 page", "url": "https://www.suse.com/security/cve/CVE-2024-26807/" }, { "category": "self", "summary": "SUSE CVE CVE-2024-26848 page", "url": "https://www.suse.com/security/cve/CVE-2024-26848/" } ], "title": "Security update for the Linux Kernel", "tracking": { "current_release_date": "2024-05-03T07:54:25Z", "generator": { "date": "2024-05-03T07:54:25Z", "engine": { "name": "cve-database.git:bin/generate-csaf.pl", "version": "1" } }, "id": "SUSE-SU-2024:1490-1", "initial_release_date": "2024-05-03T07:54:25Z", "revision_history": [ { "date": "2024-05-03T07:54:25Z", "number": "1", "summary": "Current version" } ], "status": "final", "version": "1" } }, "product_tree": { "branches": [ { "branches": [ { "branches": [ { "category": "product_version", "name": "cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "product": { "name": "cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "product_id": "cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64" } }, { "category": "product_version", "name": "dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "product": { "name": "dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "product_id": "dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64" } }, { "category": "product_version", "name": "gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "product": { "name": "gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "product_id": "gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64" } }, { "category": "product_version", "name": "kernel-azure-5.14.21-150500.33.48.1.aarch64", "product": { "name": "kernel-azure-5.14.21-150500.33.48.1.aarch64", "product_id": "kernel-azure-5.14.21-150500.33.48.1.aarch64" } }, { "category": "product_version", "name": "kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "product": { "name": "kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "product_id": "kernel-azure-devel-5.14.21-150500.33.48.1.aarch64" } }, { "category": "product_version", "name": "kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "product": { "name": "kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "product_id": "kernel-azure-extra-5.14.21-150500.33.48.1.aarch64" } }, { "category": "product_version", "name": "kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "product": { "name": "kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "product_id": "kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64" } }, { "category": "product_version", "name": "kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "product": { "name": "kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "product_id": "kernel-azure-optional-5.14.21-150500.33.48.1.aarch64" } }, { "category": "product_version", "name": "kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "product": { "name": "kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "product_id": "kernel-syms-azure-5.14.21-150500.33.48.1.aarch64" } }, { "category": "product_version", "name": "kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "product": { "name": "kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "product_id": "kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64" } }, { "category": "product_version", "name": "ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "product": { "name": "ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "product_id": "ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64" } }, { "category": "product_version", "name": "reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "product": { "name": "reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "product_id": "reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64" } } ], "category": "architecture", "name": "aarch64" }, { "branches": [ { "category": "product_version", "name": "kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "product": { "name": "kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "product_id": "kernel-devel-azure-5.14.21-150500.33.48.1.noarch" } }, { "category": "product_version", "name": "kernel-source-azure-5.14.21-150500.33.48.1.noarch", "product": { "name": "kernel-source-azure-5.14.21-150500.33.48.1.noarch", "product_id": "kernel-source-azure-5.14.21-150500.33.48.1.noarch" } } ], "category": "architecture", "name": "noarch" }, { "branches": [ { "category": "product_version", "name": "cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "product": { "name": "cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "product_id": "cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64" } }, { "category": "product_version", "name": "dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "product": { "name": "dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "product_id": "dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64" } }, { "category": "product_version", "name": "gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "product": { "name": "gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "product_id": "gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64" } }, { "category": "product_version", "name": "kernel-azure-5.14.21-150500.33.48.1.x86_64", "product": { "name": "kernel-azure-5.14.21-150500.33.48.1.x86_64", "product_id": "kernel-azure-5.14.21-150500.33.48.1.x86_64" } }, { "category": "product_version", "name": "kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "product": { "name": "kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "product_id": "kernel-azure-devel-5.14.21-150500.33.48.1.x86_64" } }, { "category": "product_version", "name": "kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "product": { "name": "kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "product_id": "kernel-azure-extra-5.14.21-150500.33.48.1.x86_64" } }, { "category": "product_version", "name": "kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "product": { "name": "kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "product_id": "kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64" } }, { "category": "product_version", "name": "kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "product": { "name": "kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "product_id": "kernel-azure-optional-5.14.21-150500.33.48.1.x86_64" } }, { "category": "product_version", "name": "kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "product": { "name": "kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "product_id": "kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64" } }, { "category": "product_version", "name": "kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "product": { "name": "kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "product_id": "kernel-syms-azure-5.14.21-150500.33.48.1.x86_64" } }, { "category": "product_version", "name": "kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "product": { "name": "kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "product_id": "kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64" } }, { "category": "product_version", "name": "ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "product": { "name": "ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "product_id": "ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64" } }, { "category": "product_version", "name": "reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64", "product": { "name": "reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64", "product_id": "reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" } } ], "category": "architecture", "name": "x86_64" }, { "branches": [ { "category": "product_name", "name": "SUSE Linux Enterprise Module for Public Cloud 15 SP5", "product": { "name": "SUSE Linux Enterprise Module for Public Cloud 15 SP5", "product_id": "SUSE Linux Enterprise Module for Public Cloud 15 SP5", "product_identification_helper": { "cpe": "cpe:/o:suse:sle-module-public-cloud:15:sp5" } } }, { "category": "product_name", "name": "openSUSE Leap 15.5", "product": { "name": "openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5", "product_identification_helper": { "cpe": "cpe:/o:opensuse:leap:15.5" } } } ], "category": "product_family", "name": "SUSE Linux Enterprise" } ], "category": "vendor", "name": "SUSE" } ], "relationships": [ { "category": "default_component_of", "full_product_name": { "name": "kernel-azure-5.14.21-150500.33.48.1.aarch64 as component of SUSE Linux Enterprise Module for Public Cloud 15 SP5", "product_id": "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64" }, "product_reference": "kernel-azure-5.14.21-150500.33.48.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise Module for Public Cloud 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-azure-5.14.21-150500.33.48.1.x86_64 as component of SUSE Linux Enterprise Module for Public Cloud 15 SP5", "product_id": "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64" }, "product_reference": "kernel-azure-5.14.21-150500.33.48.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Module for Public Cloud 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-azure-devel-5.14.21-150500.33.48.1.aarch64 as component of SUSE Linux Enterprise Module for Public Cloud 15 SP5", "product_id": "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64" }, "product_reference": "kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise Module for Public Cloud 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-azure-devel-5.14.21-150500.33.48.1.x86_64 as component of SUSE Linux Enterprise Module for Public Cloud 15 SP5", "product_id": "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64" }, "product_reference": "kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Module for Public Cloud 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-devel-azure-5.14.21-150500.33.48.1.noarch as component of SUSE Linux Enterprise Module for Public Cloud 15 SP5", "product_id": "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch" }, "product_reference": "kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "relates_to_product_reference": "SUSE Linux Enterprise Module for Public Cloud 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-source-azure-5.14.21-150500.33.48.1.noarch as component of SUSE Linux Enterprise Module for Public Cloud 15 SP5", "product_id": "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch" }, "product_reference": "kernel-source-azure-5.14.21-150500.33.48.1.noarch", "relates_to_product_reference": "SUSE Linux Enterprise Module for Public Cloud 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-syms-azure-5.14.21-150500.33.48.1.aarch64 as component of SUSE Linux Enterprise Module for Public Cloud 15 SP5", "product_id": "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64" }, "product_reference": "kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise Module for Public Cloud 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-syms-azure-5.14.21-150500.33.48.1.x86_64 as component of SUSE Linux Enterprise Module for Public Cloud 15 SP5", "product_id": "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64" }, "product_reference": "kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Module for Public Cloud 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64" }, "product_reference": "cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64" }, "product_reference": "cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64" }, "product_reference": "dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64" }, "product_reference": "dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64" }, "product_reference": "gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64" }, "product_reference": "gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-azure-5.14.21-150500.33.48.1.aarch64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64" }, "product_reference": "kernel-azure-5.14.21-150500.33.48.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-azure-5.14.21-150500.33.48.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64" }, "product_reference": "kernel-azure-5.14.21-150500.33.48.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-azure-devel-5.14.21-150500.33.48.1.aarch64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64" }, "product_reference": "kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-azure-devel-5.14.21-150500.33.48.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64" }, "product_reference": "kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-azure-extra-5.14.21-150500.33.48.1.aarch64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64" }, "product_reference": "kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-azure-extra-5.14.21-150500.33.48.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64" }, "product_reference": "kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64" }, "product_reference": "kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64" }, "product_reference": "kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-azure-optional-5.14.21-150500.33.48.1.aarch64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64" }, "product_reference": "kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-azure-optional-5.14.21-150500.33.48.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64" }, "product_reference": "kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64" }, "product_reference": "kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-devel-azure-5.14.21-150500.33.48.1.noarch as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch" }, "product_reference": "kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-source-azure-5.14.21-150500.33.48.1.noarch as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch" }, "product_reference": "kernel-source-azure-5.14.21-150500.33.48.1.noarch", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-syms-azure-5.14.21-150500.33.48.1.aarch64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64" }, "product_reference": "kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "kernel-syms-azure-5.14.21-150500.33.48.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64" }, "product_reference": "kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64" }, "product_reference": "kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64" }, "product_reference": "kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64" }, "product_reference": "ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64" }, "product_reference": "ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64" }, "product_reference": "reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" }, "product_reference": "reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" } ] }, "vulnerabilities": [ { "cve": "CVE-2021-46925", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-46925" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet/smc: fix kernel panic caused by race of smc_sock\n\nA crash occurs when smc_cdc_tx_handler() tries to access smc_sock\nbut smc_release() has already freed it.\n\n[ 4570.695099] BUG: unable to handle page fault for address: 000000002eae9e88\n[ 4570.696048] #PF: supervisor write access in kernel mode\n[ 4570.696728] #PF: error_code(0x0002) - not-present page\n[ 4570.697401] PGD 0 P4D 0\n[ 4570.697716] Oops: 0002 [#1] PREEMPT SMP NOPTI\n[ 4570.698228] CPU: 0 PID: 0 Comm: swapper/0 Not tainted 5.16.0-rc4+ #111\n[ 4570.699013] Hardware name: Alibaba Cloud Alibaba Cloud ECS, BIOS 8c24b4c 04/0\n[ 4570.699933] RIP: 0010:_raw_spin_lock+0x1a/0x30\n\u003c...\u003e\n[ 4570.711446] Call Trace:\n[ 4570.711746] \u003cIRQ\u003e\n[ 4570.711992] smc_cdc_tx_handler+0x41/0xc0\n[ 4570.712470] smc_wr_tx_tasklet_fn+0x213/0x560\n[ 4570.712981] ? smc_cdc_tx_dismisser+0x10/0x10\n[ 4570.713489] tasklet_action_common.isra.17+0x66/0x140\n[ 4570.714083] __do_softirq+0x123/0x2f4\n[ 4570.714521] irq_exit_rcu+0xc4/0xf0\n[ 4570.714934] common_interrupt+0xba/0xe0\n\nThough smc_cdc_tx_handler() checked the existence of smc connection,\nsmc_release() may have already dismissed and released the smc socket\nbefore smc_cdc_tx_handler() further visits it.\n\nsmc_cdc_tx_handler() |smc_release()\nif (!conn) |\n |\n |smc_cdc_tx_dismiss_slots()\n | smc_cdc_tx_dismisser()\n |\n |sock_put(\u0026smc-\u003esk) \u003c- last sock_put,\n | smc_sock freed\nbh_lock_sock(\u0026smc-\u003esk) (panic) |\n\nTo make sure we won\u0027t receive any CDC messages after we free the\nsmc_sock, add a refcount on the smc_connection for inflight CDC\nmessage(posted to the QP but haven\u0027t received related CQE), and\ndon\u0027t release the smc_connection until all the inflight CDC messages\nhaven been done, for both success or failed ones.\n\nUsing refcount on CDC messages brings another problem: when the link\nis going to be destroyed, smcr_link_clear() will reset the QP, which\nthen remove all the pending CQEs related to the QP in the CQ. To make\nsure all the CQEs will always come back so the refcount on the\nsmc_connection can always reach 0, smc_ib_modify_qp_reset() was replaced\nby smc_ib_modify_qp_error().\nAnd remove the timeout in smc_wr_tx_wait_no_pending_sends() since we\nneed to wait for all pending WQEs done, or we may encounter use-after-\nfree when handling CQEs.\n\nFor IB device removal routine, we need to wait for all the QPs on that\ndevice been destroyed before we can destroy CQs on the device, or\nthe refcount on smc_connection won\u0027t reach 0 and smc_sock cannot be\nreleased.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-46925", "url": "https://www.suse.com/security/cve/CVE-2021-46925" }, { "category": "external", "summary": "SUSE Bug 1220466 for CVE-2021-46925", "url": "https://bugzilla.suse.com/1220466" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.7, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2021-46925" }, { "cve": "CVE-2021-46926", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-46926" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: hda: intel-sdw-acpi: harden detection of controller\n\nThe existing code currently sets a pointer to an ACPI handle before\nchecking that it\u0027s actually a SoundWire controller. This can lead to\nissues where the graph walk continues and eventually fails, but the\npointer was set already.\n\nThis patch changes the logic so that the information provided to\nthe caller is set when a controller is found.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-46926", "url": "https://www.suse.com/security/cve/CVE-2021-46926" }, { "category": "external", "summary": "SUSE Bug 1220478 for CVE-2021-46926", "url": "https://bugzilla.suse.com/1220478" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 2.3, "baseSeverity": "LOW", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "low" } ], "title": "CVE-2021-46926" }, { "cve": "CVE-2021-46927", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-46927" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnitro_enclaves: Use get_user_pages_unlocked() call to handle mmap assert\n\nAfter commit 5b78ed24e8ec (\"mm/pagemap: add mmap_assert_locked()\nannotations to find_vma*()\"), the call to get_user_pages() will trigger\nthe mmap assert.\n\nstatic inline void mmap_assert_locked(struct mm_struct *mm)\n{\n\tlockdep_assert_held(\u0026mm-\u003emmap_lock);\n\tVM_BUG_ON_MM(!rwsem_is_locked(\u0026mm-\u003emmap_lock), mm);\n}\n\n[ 62.521410] kernel BUG at include/linux/mmap_lock.h:156!\n...........................................................\n[ 62.538938] RIP: 0010:find_vma+0x32/0x80\n...........................................................\n[ 62.605889] Call Trace:\n[ 62.608502] \u003cTASK\u003e\n[ 62.610956] ? lock_timer_base+0x61/0x80\n[ 62.614106] find_extend_vma+0x19/0x80\n[ 62.617195] __get_user_pages+0x9b/0x6a0\n[ 62.620356] __gup_longterm_locked+0x42d/0x450\n[ 62.623721] ? finish_wait+0x41/0x80\n[ 62.626748] ? __kmalloc+0x178/0x2f0\n[ 62.629768] ne_set_user_memory_region_ioctl.isra.0+0x225/0x6a0 [nitro_enclaves]\n[ 62.635776] ne_enclave_ioctl+0x1cf/0x6d7 [nitro_enclaves]\n[ 62.639541] __x64_sys_ioctl+0x82/0xb0\n[ 62.642620] do_syscall_64+0x3b/0x90\n[ 62.645642] entry_SYSCALL_64_after_hwframe+0x44/0xae\n\nUse get_user_pages_unlocked() when setting the enclave memory regions.\nThat\u0027s a similar pattern as mmap_read_lock() used together with\nget_user_pages().", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-46927", "url": "https://www.suse.com/security/cve/CVE-2021-46927" }, { "category": "external", "summary": "SUSE Bug 1220443 for CVE-2021-46927", "url": "https://bugzilla.suse.com/1220443" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.4, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2021-46927" }, { "cve": "CVE-2021-46929", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-46929" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nsctp: use call_rcu to free endpoint\n\nThis patch is to delay the endpoint free by calling call_rcu() to fix\nanother use-after-free issue in sctp_sock_dump():\n\n BUG: KASAN: use-after-free in __lock_acquire+0x36d9/0x4c20\n Call Trace:\n __lock_acquire+0x36d9/0x4c20 kernel/locking/lockdep.c:3218\n lock_acquire+0x1ed/0x520 kernel/locking/lockdep.c:3844\n __raw_spin_lock_bh include/linux/spinlock_api_smp.h:135 [inline]\n _raw_spin_lock_bh+0x31/0x40 kernel/locking/spinlock.c:168\n spin_lock_bh include/linux/spinlock.h:334 [inline]\n __lock_sock+0x203/0x350 net/core/sock.c:2253\n lock_sock_nested+0xfe/0x120 net/core/sock.c:2774\n lock_sock include/net/sock.h:1492 [inline]\n sctp_sock_dump+0x122/0xb20 net/sctp/diag.c:324\n sctp_for_each_transport+0x2b5/0x370 net/sctp/socket.c:5091\n sctp_diag_dump+0x3ac/0x660 net/sctp/diag.c:527\n __inet_diag_dump+0xa8/0x140 net/ipv4/inet_diag.c:1049\n inet_diag_dump+0x9b/0x110 net/ipv4/inet_diag.c:1065\n netlink_dump+0x606/0x1080 net/netlink/af_netlink.c:2244\n __netlink_dump_start+0x59a/0x7c0 net/netlink/af_netlink.c:2352\n netlink_dump_start include/linux/netlink.h:216 [inline]\n inet_diag_handler_cmd+0x2ce/0x3f0 net/ipv4/inet_diag.c:1170\n __sock_diag_cmd net/core/sock_diag.c:232 [inline]\n sock_diag_rcv_msg+0x31d/0x410 net/core/sock_diag.c:263\n netlink_rcv_skb+0x172/0x440 net/netlink/af_netlink.c:2477\n sock_diag_rcv+0x2a/0x40 net/core/sock_diag.c:274\n\nThis issue occurs when asoc is peeled off and the old sk is freed after\ngetting it by asoc-\u003ebase.sk and before calling lock_sock(sk).\n\nTo prevent the sk free, as a holder of the sk, ep should be alive when\ncalling lock_sock(). This patch uses call_rcu() and moves sock_put and\nep free into sctp_endpoint_destroy_rcu(), so that it\u0027s safe to try to\nhold the ep under rcu_read_lock in sctp_transport_traverse_process().\n\nIf sctp_endpoint_hold() returns true, it means this ep is still alive\nand we have held it and can continue to dump it; If it returns false,\nit means this ep is dead and can be freed after rcu_read_unlock, and\nwe should skip it.\n\nIn sctp_sock_dump(), after locking the sk, if this ep is different from\ntsp-\u003easoc-\u003eep, it means during this dumping, this asoc was peeled off\nbefore calling lock_sock(), and the sk should be skipped; If this ep is\nthe same with tsp-\u003easoc-\u003eep, it means no peeloff happens on this asoc,\nand due to lock_sock, no peeloff will happen either until release_sock.\n\nNote that delaying endpoint free won\u0027t delay the port release, as the\nport release happens in sctp_endpoint_destroy() before calling call_rcu().\nAlso, freeing endpoint by call_rcu() makes it safe to access the sk by\nasoc-\u003ebase.sk in sctp_assocs_seq_show() and sctp_rcv().\n\nThanks Jones to bring this issue up.\n\nv1-\u003ev2:\n - improve the changelog.\n - add kfree(ep) into sctp_endpoint_destroy_rcu(), as Jakub noticed.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-46929", "url": "https://www.suse.com/security/cve/CVE-2021-46929" }, { "category": "external", "summary": "SUSE Bug 1220482 for CVE-2021-46929", "url": "https://bugzilla.suse.com/1220482" }, { "category": "external", "summary": "SUSE Bug 1222400 for CVE-2021-46929", "url": "https://bugzilla.suse.com/1222400" }, { "category": "external", "summary": "SUSE Bug 1224298 for CVE-2021-46929", "url": "https://bugzilla.suse.com/1224298" }, { "category": "external", "summary": "SUSE Bug 1224878 for CVE-2021-46929", "url": "https://bugzilla.suse.com/1224878" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 7.3, "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "important" } ], "title": "CVE-2021-46929" }, { "cve": "CVE-2021-46930", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-46930" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nusb: mtu3: fix list_head check warning\n\nThis is caused by uninitialization of list_head.\n\nBUG: KASAN: use-after-free in __list_del_entry_valid+0x34/0xe4\n\nCall trace:\ndump_backtrace+0x0/0x298\nshow_stack+0x24/0x34\ndump_stack+0x130/0x1a8\nprint_address_description+0x88/0x56c\n__kasan_report+0x1b8/0x2a0\nkasan_report+0x14/0x20\n__asan_load8+0x9c/0xa0\n__list_del_entry_valid+0x34/0xe4\nmtu3_req_complete+0x4c/0x300 [mtu3]\nmtu3_gadget_stop+0x168/0x448 [mtu3]\nusb_gadget_unregister_driver+0x204/0x3a0\nunregister_gadget_item+0x44/0xa4", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-46930", "url": "https://www.suse.com/security/cve/CVE-2021-46930" }, { "category": "external", "summary": "SUSE Bug 1220484 for CVE-2021-46930", "url": "https://bugzilla.suse.com/1220484" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.3, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2021-46930" }, { "cve": "CVE-2021-46931", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-46931" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet/mlx5e: Wrap the tx reporter dump callback to extract the sq\n\nFunction mlx5e_tx_reporter_dump_sq() casts its void * argument to struct\nmlx5e_txqsq *, but in TX-timeout-recovery flow the argument is actually\nof type struct mlx5e_tx_timeout_ctx *.\n\n mlx5_core 0000:08:00.1 enp8s0f1: TX timeout detected\n mlx5_core 0000:08:00.1 enp8s0f1: TX timeout on queue: 1, SQ: 0x11ec, CQ: 0x146d, SQ Cons: 0x0 SQ Prod: 0x1, usecs since last trans: 21565000\n BUG: stack guard page was hit at 0000000093f1a2de (stack is 00000000b66ea0dc..000000004d932dae)\n kernel stack overflow (page fault): 0000 [#1] SMP NOPTI\n CPU: 5 PID: 95 Comm: kworker/u20:1 Tainted: G W OE 5.13.0_mlnx #1\n Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS rel-1.13.0-0-gf21b5a4aeb02-prebuilt.qemu.org 04/01/2014\n Workqueue: mlx5e mlx5e_tx_timeout_work [mlx5_core]\n RIP: 0010:mlx5e_tx_reporter_dump_sq+0xd3/0x180\n [mlx5_core]\n Call Trace:\n mlx5e_tx_reporter_dump+0x43/0x1c0 [mlx5_core]\n devlink_health_do_dump.part.91+0x71/0xd0\n devlink_health_report+0x157/0x1b0\n mlx5e_reporter_tx_timeout+0xb9/0xf0 [mlx5_core]\n ? mlx5e_tx_reporter_err_cqe_recover+0x1d0/0x1d0\n [mlx5_core]\n ? mlx5e_health_queue_dump+0xd0/0xd0 [mlx5_core]\n ? update_load_avg+0x19b/0x550\n ? set_next_entity+0x72/0x80\n ? pick_next_task_fair+0x227/0x340\n ? finish_task_switch+0xa2/0x280\n mlx5e_tx_timeout_work+0x83/0xb0 [mlx5_core]\n process_one_work+0x1de/0x3a0\n worker_thread+0x2d/0x3c0\n ? process_one_work+0x3a0/0x3a0\n kthread+0x115/0x130\n ? kthread_park+0x90/0x90\n ret_from_fork+0x1f/0x30\n --[ end trace 51ccabea504edaff ]---\n RIP: 0010:mlx5e_tx_reporter_dump_sq+0xd3/0x180\n PKRU: 55555554\n Kernel panic - not syncing: Fatal exception\n Kernel Offset: disabled\n end Kernel panic - not syncing: Fatal exception\n\nTo fix this bug add a wrapper for mlx5e_tx_reporter_dump_sq() which\nextracts the sq from struct mlx5e_tx_timeout_ctx and set it as the\nTX-timeout-recovery flow dump callback.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-46931", "url": "https://www.suse.com/security/cve/CVE-2021-46931" }, { "category": "external", "summary": "SUSE Bug 1220486 for CVE-2021-46931", "url": "https://bugzilla.suse.com/1220486" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2021-46931" }, { "cve": "CVE-2021-46933", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-46933" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nusb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear.\n\nffs_data_clear is indirectly called from both ffs_fs_kill_sb and\nffs_ep0_release, so it ends up being called twice when userland closes ep0\nand then unmounts f_fs.\nIf userland provided an eventfd along with function\u0027s USB descriptors, it\nends up calling eventfd_ctx_put as many times, causing a refcount\nunderflow.\nNULL-ify ffs_eventfd to prevent these extraneous eventfd_ctx_put calls.\n\nAlso, set epfiles to NULL right after de-allocating it, for readability.\n\nFor completeness, ffs_data_clear actually ends up being called thrice, the\nlast call being before the whole ffs structure gets freed, so when this\nspecific sequence happens there is a second underflow happening (but not\nbeing reported):\n\n/sys/kernel/debug/tracing# modprobe usb_f_fs\n/sys/kernel/debug/tracing# echo ffs_data_clear \u003e set_ftrace_filter\n/sys/kernel/debug/tracing# echo function \u003e current_tracer\n/sys/kernel/debug/tracing# echo 1 \u003e tracing_on\n(setup gadget, run and kill function userland process, teardown gadget)\n/sys/kernel/debug/tracing# echo 0 \u003e tracing_on\n/sys/kernel/debug/tracing# cat trace\n smartcard-openp-436 [000] ..... 1946.208786: ffs_data_clear \u003c-ffs_data_closed\n smartcard-openp-431 [000] ..... 1946.279147: ffs_data_clear \u003c-ffs_data_closed\n smartcard-openp-431 [000] .n... 1946.905512: ffs_data_clear \u003c-ffs_data_put\n\nWarning output corresponding to above trace:\n[ 1946.284139] WARNING: CPU: 0 PID: 431 at lib/refcount.c:28 refcount_warn_saturate+0x110/0x15c\n[ 1946.293094] refcount_t: underflow; use-after-free.\n[ 1946.298164] Modules linked in: usb_f_ncm(E) u_ether(E) usb_f_fs(E) hci_uart(E) btqca(E) btrtl(E) btbcm(E) btintel(E) bluetooth(E) nls_ascii(E) nls_cp437(E) vfat(E) fat(E) bcm2835_v4l2(CE) bcm2835_mmal_vchiq(CE) videobuf2_vmalloc(E) videobuf2_memops(E) sha512_generic(E) videobuf2_v4l2(E) sha512_arm(E) videobuf2_common(E) videodev(E) cpufreq_dt(E) snd_bcm2835(CE) brcmfmac(E) mc(E) vc4(E) ctr(E) brcmutil(E) snd_soc_core(E) snd_pcm_dmaengine(E) drbg(E) snd_pcm(E) snd_timer(E) snd(E) soundcore(E) drm_kms_helper(E) cec(E) ansi_cprng(E) rc_core(E) syscopyarea(E) raspberrypi_cpufreq(E) sysfillrect(E) sysimgblt(E) cfg80211(E) max17040_battery(OE) raspberrypi_hwmon(E) fb_sys_fops(E) regmap_i2c(E) ecdh_generic(E) rfkill(E) ecc(E) bcm2835_rng(E) rng_core(E) vchiq(CE) leds_gpio(E) libcomposite(E) fuse(E) configfs(E) ip_tables(E) x_tables(E) autofs4(E) ext4(E) crc16(E) mbcache(E) jbd2(E) crc32c_generic(E) sdhci_iproc(E) sdhci_pltfm(E) sdhci(E)\n[ 1946.399633] CPU: 0 PID: 431 Comm: smartcard-openp Tainted: G C OE 5.15.0-1-rpi #1 Debian 5.15.3-1\n[ 1946.417950] Hardware name: BCM2835\n[ 1946.425442] Backtrace:\n[ 1946.432048] [\u003cc08d60a0\u003e] (dump_backtrace) from [\u003cc08d62ec\u003e] (show_stack+0x20/0x24)\n[ 1946.448226] r7:00000009 r6:0000001c r5:c04a948c r4:c0a64e2c\n[ 1946.458412] [\u003cc08d62cc\u003e] (show_stack) from [\u003cc08d9ae0\u003e] (dump_stack+0x28/0x30)\n[ 1946.470380] [\u003cc08d9ab8\u003e] (dump_stack) from [\u003cc0123500\u003e] (__warn+0xe8/0x154)\n[ 1946.482067] r5:c04a948c r4:c0a71dc8\n[ 1946.490184] [\u003cc0123418\u003e] (__warn) from [\u003cc08d6948\u003e] (warn_slowpath_fmt+0xa0/0xe4)\n[ 1946.506758] r7:00000009 r6:0000001c r5:c0a71dc8 r4:c0a71e04\n[ 1946.517070] [\u003cc08d68ac\u003e] (warn_slowpath_fmt) from [\u003cc04a948c\u003e] (refcount_warn_saturate+0x110/0x15c)\n[ 1946.535309] r8:c0100224 r7:c0dfcb84 r6:ffffffff r5:c3b84c00 r4:c24a17c0\n[ 1946.546708] [\u003cc04a937c\u003e] (refcount_warn_saturate) from [\u003cc0380134\u003e] (eventfd_ctx_put+0x48/0x74)\n[ 1946.564476] [\u003cc03800ec\u003e] (eventfd_ctx_put) from [\u003cbf5464e8\u003e] (ffs_data_clear+0xd0/0x118 [usb_f_fs])\n[ 1946.582664] r5:c3b84c00 r4:c2695b00\n[ 1946.590668] [\u003cbf546418\u003e] (ffs_data_clear [usb_f_fs]) from [\u003cbf547cc0\u003e] (ffs_data_closed+0x9c/0x150 [usb_f_fs])\n[ 1946.609608] r5:bf54d014 r4:c2695b00\n[ 1946.617522] [\u003cbf547c24\u003e] (ffs_data_closed [usb_f_fs]) from [\u003cbf547da0\u003e] (ffs_fs_kill_sb+0x2c/0x30 [usb_f_fs])\n[ 1946.636217] r7:c0dfcb\n---truncated---", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-46933", "url": "https://www.suse.com/security/cve/CVE-2021-46933" }, { "category": "external", "summary": "SUSE Bug 1220487 for CVE-2021-46933", "url": "https://bugzilla.suse.com/1220487" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.4, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2021-46933" }, { "cve": "CVE-2021-46936", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-46936" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: fix use-after-free in tw_timer_handler\n\nA real world panic issue was found as follow in Linux 5.4.\n\n BUG: unable to handle page fault for address: ffffde49a863de28\n PGD 7e6fe62067 P4D 7e6fe62067 PUD 7e6fe63067 PMD f51e064067 PTE 0\n RIP: 0010:tw_timer_handler+0x20/0x40\n Call Trace:\n \u003cIRQ\u003e\n call_timer_fn+0x2b/0x120\n run_timer_softirq+0x1ef/0x450\n __do_softirq+0x10d/0x2b8\n irq_exit+0xc7/0xd0\n smp_apic_timer_interrupt+0x68/0x120\n apic_timer_interrupt+0xf/0x20\n\nThis issue was also reported since 2017 in the thread [1],\nunfortunately, the issue was still can be reproduced after fixing\nDCCP.\n\nThe ipv4_mib_exit_net is called before tcp_sk_exit_batch when a net\nnamespace is destroyed since tcp_sk_ops is registered befrore\nipv4_mib_ops, which means tcp_sk_ops is in the front of ipv4_mib_ops\nin the list of pernet_list. There will be a use-after-free on\nnet-\u003emib.net_statistics in tw_timer_handler after ipv4_mib_exit_net\nif there are some inflight time-wait timers.\n\nThis bug is not introduced by commit f2bf415cfed7 (\"mib: add net to\nNET_ADD_STATS_BH\") since the net_statistics is a global variable\ninstead of dynamic allocation and freeing. Actually, commit\n61a7e26028b9 (\"mib: put net statistics on struct net\") introduces\nthe bug since it put net statistics on struct net and free it when\nnet namespace is destroyed.\n\nMoving init_ipv4_mibs() to the front of tcp_init() to fix this bug\nand replace pr_crit() with panic() since continuing is meaningless\nwhen init_ipv4_mibs() fails.\n\n[1] https://groups.google.com/g/syzkaller/c/p1tn-_Kc6l4/m/smuL_FMAAgAJ?pli=1", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-46936", "url": "https://www.suse.com/security/cve/CVE-2021-46936" }, { "category": "external", "summary": "SUSE Bug 1220439 for CVE-2021-46936", "url": "https://bugzilla.suse.com/1220439" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2021-46936" }, { "cve": "CVE-2021-47082", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-47082" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ntun: avoid double free in tun_free_netdev\n\nAvoid double free in tun_free_netdev() by moving the\ndev-\u003etstats and tun-\u003esecurity allocs to a new ndo_init routine\n(tun_net_init()) that will be called by register_netdevice().\nndo_init is paired with the desctructor (tun_free_netdev()),\nso if there\u0027s an error in register_netdevice() the destructor\nwill handle the frees.\n\nBUG: KASAN: double-free or invalid-free in selinux_tun_dev_free_security+0x1a/0x20 security/selinux/hooks.c:5605\n\nCPU: 0 PID: 25750 Comm: syz-executor416 Not tainted 5.16.0-rc2-syzk #1\nHardware name: Red Hat KVM, BIOS\nCall Trace:\n\u003cTASK\u003e\n__dump_stack lib/dump_stack.c:88 [inline]\ndump_stack_lvl+0x89/0xb5 lib/dump_stack.c:106\nprint_address_description.constprop.9+0x28/0x160 mm/kasan/report.c:247\nkasan_report_invalid_free+0x55/0x80 mm/kasan/report.c:372\n____kasan_slab_free mm/kasan/common.c:346 [inline]\n__kasan_slab_free+0x107/0x120 mm/kasan/common.c:374\nkasan_slab_free include/linux/kasan.h:235 [inline]\nslab_free_hook mm/slub.c:1723 [inline]\nslab_free_freelist_hook mm/slub.c:1749 [inline]\nslab_free mm/slub.c:3513 [inline]\nkfree+0xac/0x2d0 mm/slub.c:4561\nselinux_tun_dev_free_security+0x1a/0x20 security/selinux/hooks.c:5605\nsecurity_tun_dev_free_security+0x4f/0x90 security/security.c:2342\ntun_free_netdev+0xe6/0x150 drivers/net/tun.c:2215\nnetdev_run_todo+0x4df/0x840 net/core/dev.c:10627\nrtnl_unlock+0x13/0x20 net/core/rtnetlink.c:112\n__tun_chr_ioctl+0x80c/0x2870 drivers/net/tun.c:3302\ntun_chr_ioctl+0x2f/0x40 drivers/net/tun.c:3311\nvfs_ioctl fs/ioctl.c:51 [inline]\n__do_sys_ioctl fs/ioctl.c:874 [inline]\n__se_sys_ioctl fs/ioctl.c:860 [inline]\n__x64_sys_ioctl+0x19d/0x220 fs/ioctl.c:860\ndo_syscall_x64 arch/x86/entry/common.c:50 [inline]\ndo_syscall_64+0x3a/0x80 arch/x86/entry/common.c:80\nentry_SYSCALL_64_after_hwframe+0x44/0xae", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-47082", "url": "https://www.suse.com/security/cve/CVE-2021-47082" }, { "category": "external", "summary": "SUSE Bug 1220969 for CVE-2021-47082", "url": "https://bugzilla.suse.com/1220969" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.4, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2021-47082" }, { "cve": "CVE-2021-47087", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-47087" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ntee: optee: Fix incorrect page free bug\n\nPointer to the allocated pages (struct page *page) has already\nprogressed towards the end of allocation. It is incorrect to perform\n__free_pages(page, order) using this pointer as we would free any\narbitrary pages. Fix this by stop modifying the page pointer.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-47087", "url": "https://www.suse.com/security/cve/CVE-2021-47087" }, { "category": "external", "summary": "SUSE Bug 1220954 for CVE-2021-47087", "url": "https://bugzilla.suse.com/1220954" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.3, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2021-47087" }, { "cve": "CVE-2021-47091", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-47091" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nmac80211: fix locking in ieee80211_start_ap error path\n\nWe need to hold the local-\u003emtx to release the channel context,\nas even encoded by the lockdep_assert_held() there. Fix it.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-47091", "url": "https://www.suse.com/security/cve/CVE-2021-47091" }, { "category": "external", "summary": "SUSE Bug 1220959 for CVE-2021-47091", "url": "https://bugzilla.suse.com/1220959" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2021-47091" }, { "cve": "CVE-2021-47093", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-47093" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nplatform/x86: intel_pmc_core: fix memleak on registration failure\n\nIn case device registration fails during module initialisation, the\nplatform device structure needs to be freed using platform_device_put()\nto properly free all resources (e.g. the device name).", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-47093", "url": "https://www.suse.com/security/cve/CVE-2021-47093" }, { "category": "external", "summary": "SUSE Bug 1220978 for CVE-2021-47093", "url": "https://bugzilla.suse.com/1220978" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2021-47093" }, { "cve": "CVE-2021-47094", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-47094" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: x86/mmu: Don\u0027t advance iterator after restart due to yielding\n\nAfter dropping mmu_lock in the TDP MMU, restart the iterator during\ntdp_iter_next() and do not advance the iterator. Advancing the iterator\nresults in skipping the top-level SPTE and all its children, which is\nfatal if any of the skipped SPTEs were not visited before yielding.\n\nWhen zapping all SPTEs, i.e. when min_level == root_level, restarting the\niter and then invoking tdp_iter_next() is always fatal if the current gfn\nhas as a valid SPTE, as advancing the iterator results in try_step_side()\nskipping the current gfn, which wasn\u0027t visited before yielding.\n\nSprinkle WARNs on iter-\u003eyielded being true in various helpers that are\noften used in conjunction with yielding, and tag the helper with\n__must_check to reduce the probabily of improper usage.\n\nFailing to zap a top-level SPTE manifests in one of two ways. If a valid\nSPTE is skipped by both kvm_tdp_mmu_zap_all() and kvm_tdp_mmu_put_root(),\nthe shadow page will be leaked and KVM will WARN accordingly.\n\n WARNING: CPU: 1 PID: 3509 at arch/x86/kvm/mmu/tdp_mmu.c:46 [kvm]\n RIP: 0010:kvm_mmu_uninit_tdp_mmu+0x3e/0x50 [kvm]\n Call Trace:\n \u003cTASK\u003e\n kvm_arch_destroy_vm+0x130/0x1b0 [kvm]\n kvm_destroy_vm+0x162/0x2a0 [kvm]\n kvm_vcpu_release+0x34/0x60 [kvm]\n __fput+0x82/0x240\n task_work_run+0x5c/0x90\n do_exit+0x364/0xa10\n ? futex_unqueue+0x38/0x60\n do_group_exit+0x33/0xa0\n get_signal+0x155/0x850\n arch_do_signal_or_restart+0xed/0x750\n exit_to_user_mode_prepare+0xc5/0x120\n syscall_exit_to_user_mode+0x1d/0x40\n do_syscall_64+0x48/0xc0\n entry_SYSCALL_64_after_hwframe+0x44/0xae\n\nIf kvm_tdp_mmu_zap_all() skips a gfn/SPTE but that SPTE is then zapped by\nkvm_tdp_mmu_put_root(), KVM triggers a use-after-free in the form of\nmarking a struct page as dirty/accessed after it has been put back on the\nfree list. This directly triggers a WARN due to encountering a page with\npage_count() == 0, but it can also lead to data corruption and additional\nerrors in the kernel.\n\n WARNING: CPU: 7 PID: 1995658 at arch/x86/kvm/../../../virt/kvm/kvm_main.c:171\n RIP: 0010:kvm_is_zone_device_pfn.part.0+0x9e/0xd0 [kvm]\n Call Trace:\n \u003cTASK\u003e\n kvm_set_pfn_dirty+0x120/0x1d0 [kvm]\n __handle_changed_spte+0x92e/0xca0 [kvm]\n __handle_changed_spte+0x63c/0xca0 [kvm]\n __handle_changed_spte+0x63c/0xca0 [kvm]\n __handle_changed_spte+0x63c/0xca0 [kvm]\n zap_gfn_range+0x549/0x620 [kvm]\n kvm_tdp_mmu_put_root+0x1b6/0x270 [kvm]\n mmu_free_root_page+0x219/0x2c0 [kvm]\n kvm_mmu_free_roots+0x1b4/0x4e0 [kvm]\n kvm_mmu_unload+0x1c/0xa0 [kvm]\n kvm_arch_destroy_vm+0x1f2/0x5c0 [kvm]\n kvm_put_kvm+0x3b1/0x8b0 [kvm]\n kvm_vcpu_release+0x4e/0x70 [kvm]\n __fput+0x1f7/0x8c0\n task_work_run+0xf8/0x1a0\n do_exit+0x97b/0x2230\n do_group_exit+0xda/0x2a0\n get_signal+0x3be/0x1e50\n arch_do_signal_or_restart+0x244/0x17f0\n exit_to_user_mode_prepare+0xcb/0x120\n syscall_exit_to_user_mode+0x1d/0x40\n do_syscall_64+0x4d/0x90\n entry_SYSCALL_64_after_hwframe+0x44/0xae\n\nNote, the underlying bug existed even before commit 1af4a96025b3 (\"KVM:\nx86/mmu: Yield in TDU MMU iter even if no SPTES changed\") moved calls to\ntdp_mmu_iter_cond_resched() to the beginning of loops, as KVM could still\nincorrectly advance past a top-level entry when yielding on a lower-level\nentry. But with respect to leaking shadow pages, the bug was introduced\nby yielding before processing the current gfn.\n\nAlternatively, tdp_mmu_iter_cond_resched() could simply fall through, or\ncallers could jump to their \"retry\" label. The downside of that approach\nis that tdp_mmu_iter_cond_resched() _must_ be called before anything else\nin the loop, and there\u0027s no easy way to enfornce that requirement.\n\nIdeally, KVM would handling the cond_resched() fully within the iterator\nmacro (the code is actually quite clean) and avoid this entire class of\nbugs, but that is extremely difficult do wh\n---truncated---", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-47094", "url": "https://www.suse.com/security/cve/CVE-2021-47094" }, { "category": "external", "summary": "SUSE Bug 1221551 for CVE-2021-47094", "url": "https://bugzilla.suse.com/1221551" }, { "category": "external", "summary": "SUSE Bug 1222401 for CVE-2021-47094", "url": "https://bugzilla.suse.com/1222401" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 7.1, "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "important" } ], "title": "CVE-2021-47094" }, { "cve": "CVE-2021-47095", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-47095" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nipmi: ssif: initialize ssif_info-\u003eclient early\n\nDuring probe ssif_info-\u003eclient is dereferenced in error path. However,\nit is set when some of the error checking has already been done. This\ncauses following kernel crash if an error path is taken:\n\n[ 30.645593][ T674] ipmi_ssif 0-000e: ipmi_ssif: Not probing, Interface already present\n[ 30.657616][ T674] Unable to handle kernel NULL pointer dereference at virtual address 0000000000000088\n...\n[ 30.657723][ T674] pc : __dev_printk+0x28/0xa0\n[ 30.657732][ T674] lr : _dev_err+0x7c/0xa0\n...\n[ 30.657772][ T674] Call trace:\n[ 30.657775][ T674] __dev_printk+0x28/0xa0\n[ 30.657778][ T674] _dev_err+0x7c/0xa0\n[ 30.657781][ T674] ssif_probe+0x548/0x900 [ipmi_ssif 62ce4b08badc1458fd896206d9ef69a3c31f3d3e]\n[ 30.657791][ T674] i2c_device_probe+0x37c/0x3c0\n...\n\nInitialize ssif_info-\u003eclient before any error path can be taken. Clear\ni2c_client data in the error path to prevent the dangling pointer from\nleaking.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-47095", "url": "https://www.suse.com/security/cve/CVE-2021-47095" }, { "category": "external", "summary": "SUSE Bug 1220979 for CVE-2021-47095", "url": "https://bugzilla.suse.com/1220979" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.1, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2021-47095" }, { "cve": "CVE-2021-47096", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-47096" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: rawmidi - fix the uninitalized user_pversion\n\nThe user_pversion was uninitialized for the user space file structure\nin the open function, because the file private structure use\nkmalloc for the allocation.\n\nThe kernel ALSA sequencer code clears the file structure, so no additional\nfixes are required.\n\nBugLink: https://github.com/alsa-project/alsa-lib/issues/178", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-47096", "url": "https://www.suse.com/security/cve/CVE-2021-47096" }, { "category": "external", "summary": "SUSE Bug 1220981 for CVE-2021-47096", "url": "https://bugzilla.suse.com/1220981" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2021-47096" }, { "cve": "CVE-2021-47097", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-47097" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nInput: elantech - fix stack out of bound access in elantech_change_report_id()\n\nThe array param[] in elantech_change_report_id() must be at least 3\nbytes, because elantech_read_reg_params() is calling ps2_command() with\nPSMOUSE_CMD_GETINFO, that is going to access 3 bytes from param[], but\nit\u0027s defined in the stack as an array of 2 bytes, therefore we have a\npotential stack out-of-bounds access here, also confirmed by KASAN:\n\n[ 6.512374] BUG: KASAN: stack-out-of-bounds in __ps2_command+0x372/0x7e0\n[ 6.512397] Read of size 1 at addr ffff8881024d77c2 by task kworker/2:1/118\n\n[ 6.512416] CPU: 2 PID: 118 Comm: kworker/2:1 Not tainted 5.13.0-22-generic #22+arighi20211110\n[ 6.512428] Hardware name: LENOVO 20T8000QGE/20T8000QGE, BIOS R1AET32W (1.08 ) 08/14/2020\n[ 6.512436] Workqueue: events_long serio_handle_event\n[ 6.512453] Call Trace:\n[ 6.512462] show_stack+0x52/0x58\n[ 6.512474] dump_stack+0xa1/0xd3\n[ 6.512487] print_address_description.constprop.0+0x1d/0x140\n[ 6.512502] ? __ps2_command+0x372/0x7e0\n[ 6.512516] __kasan_report.cold+0x7d/0x112\n[ 6.512527] ? _raw_write_lock_irq+0x20/0xd0\n[ 6.512539] ? __ps2_command+0x372/0x7e0\n[ 6.512552] kasan_report+0x3c/0x50\n[ 6.512564] __asan_load1+0x6a/0x70\n[ 6.512575] __ps2_command+0x372/0x7e0\n[ 6.512589] ? ps2_drain+0x240/0x240\n[ 6.512601] ? dev_printk_emit+0xa2/0xd3\n[ 6.512612] ? dev_vprintk_emit+0xc5/0xc5\n[ 6.512621] ? __kasan_check_write+0x14/0x20\n[ 6.512634] ? mutex_lock+0x8f/0xe0\n[ 6.512643] ? __mutex_lock_slowpath+0x20/0x20\n[ 6.512655] ps2_command+0x52/0x90\n[ 6.512670] elantech_ps2_command+0x4f/0xc0 [psmouse]\n[ 6.512734] elantech_change_report_id+0x1e6/0x256 [psmouse]\n[ 6.512799] ? elantech_report_trackpoint.constprop.0.cold+0xd/0xd [psmouse]\n[ 6.512863] ? ps2_command+0x7f/0x90\n[ 6.512877] elantech_query_info.cold+0x6bd/0x9ed [psmouse]\n[ 6.512943] ? elantech_setup_ps2+0x460/0x460 [psmouse]\n[ 6.513005] ? psmouse_reset+0x69/0xb0 [psmouse]\n[ 6.513064] ? psmouse_attr_set_helper+0x2a0/0x2a0 [psmouse]\n[ 6.513122] ? phys_pmd_init+0x30e/0x521\n[ 6.513137] elantech_init+0x8a/0x200 [psmouse]\n[ 6.513200] ? elantech_init_ps2+0xf0/0xf0 [psmouse]\n[ 6.513249] ? elantech_query_info+0x440/0x440 [psmouse]\n[ 6.513296] ? synaptics_send_cmd+0x60/0x60 [psmouse]\n[ 6.513342] ? elantech_query_info+0x440/0x440 [psmouse]\n[ 6.513388] ? psmouse_try_protocol+0x11e/0x170 [psmouse]\n[ 6.513432] psmouse_extensions+0x65d/0x6e0 [psmouse]\n[ 6.513476] ? psmouse_try_protocol+0x170/0x170 [psmouse]\n[ 6.513519] ? mutex_unlock+0x22/0x40\n[ 6.513526] ? ps2_command+0x7f/0x90\n[ 6.513536] ? psmouse_probe+0xa3/0xf0 [psmouse]\n[ 6.513580] psmouse_switch_protocol+0x27d/0x2e0 [psmouse]\n[ 6.513624] psmouse_connect+0x272/0x530 [psmouse]\n[ 6.513669] serio_driver_probe+0x55/0x70\n[ 6.513679] really_probe+0x190/0x720\n[ 6.513689] driver_probe_device+0x160/0x1f0\n[ 6.513697] device_driver_attach+0x119/0x130\n[ 6.513705] ? device_driver_attach+0x130/0x130\n[ 6.513713] __driver_attach+0xe7/0x1a0\n[ 6.513720] ? device_driver_attach+0x130/0x130\n[ 6.513728] bus_for_each_dev+0xfb/0x150\n[ 6.513738] ? subsys_dev_iter_exit+0x10/0x10\n[ 6.513748] ? _raw_write_unlock_bh+0x30/0x30\n[ 6.513757] driver_attach+0x2d/0x40\n[ 6.513764] serio_handle_event+0x199/0x3d0\n[ 6.513775] process_one_work+0x471/0x740\n[ 6.513785] worker_thread+0x2d2/0x790\n[ 6.513794] ? process_one_work+0x740/0x740\n[ 6.513802] kthread+0x1b4/0x1e0\n[ 6.513809] ? set_kthread_struct+0x80/0x80\n[ 6.513816] ret_from_fork+0x22/0x30\n\n[ 6.513832] The buggy address belongs to the page:\n[ 6.513838] page:00000000bc35e189 refcount:0 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0x1024d7\n[ 6.513847] flags: 0x17ffffc0000000(node=0|zone=2|lastcpupid=0x1fffff)\n[ 6.513860] raw: 0\n---truncated---", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-47097", "url": "https://www.suse.com/security/cve/CVE-2021-47097" }, { "category": "external", "summary": "SUSE Bug 1220982 for CVE-2021-47097", "url": "https://bugzilla.suse.com/1220982" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2021-47097" }, { "cve": "CVE-2021-47098", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-47098" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nhwmon: (lm90) Prevent integer overflow/underflow in hysteresis calculations\n\nCommit b50aa49638c7 (\"hwmon: (lm90) Prevent integer underflows of\ntemperature calculations\") addressed a number of underflow situations\nwhen writing temperature limits. However, it missed one situation, seen\nwhen an attempt is made to set the hysteresis value to MAX_LONG and the\ncritical temperature limit is negative.\n\nUse clamp_val() when setting the hysteresis temperature to ensure that\nthe provided value can never overflow or underflow.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-47098", "url": "https://www.suse.com/security/cve/CVE-2021-47098" }, { "category": "external", "summary": "SUSE Bug 1220983 for CVE-2021-47098", "url": "https://bugzilla.suse.com/1220983" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2021-47098" }, { "cve": "CVE-2021-47099", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-47099" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nveth: ensure skb entering GRO are not cloned.\n\nAfter commit d3256efd8e8b (\"veth: allow enabling NAPI even without XDP\"),\nif GRO is enabled on a veth device and TSO is disabled on the peer\ndevice, TCP skbs will go through the NAPI callback. If there is no XDP\nprogram attached, the veth code does not perform any share check, and\nshared/cloned skbs could enter the GRO engine.\n\nIgnat reported a BUG triggered later-on due to the above condition:\n\n[ 53.970529][ C1] kernel BUG at net/core/skbuff.c:3574!\n[ 53.981755][ C1] invalid opcode: 0000 [#1] PREEMPT SMP KASAN PTI\n[ 53.982634][ C1] CPU: 1 PID: 19 Comm: ksoftirqd/1 Not tainted 5.16.0-rc5+ #25\n[ 53.982634][ C1] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 0.0.0 02/06/2015\n[ 53.982634][ C1] RIP: 0010:skb_shift+0x13ef/0x23b0\n[ 53.982634][ C1] Code: ea 03 0f b6 04 02 48 89 fa 83 e2 07 38 d0\n7f 08 84 c0 0f 85 41 0c 00 00 41 80 7f 02 00 4d 8d b5 d0 00 00 00 0f\n85 74 f5 ff ff \u003c0f\u003e 0b 4d 8d 77 20 be 04 00 00 00 4c 89 44 24 78 4c 89\nf7 4c 89 8c\n[ 53.982634][ C1] RSP: 0018:ffff8881008f7008 EFLAGS: 00010246\n[ 53.982634][ C1] RAX: 0000000000000000 RBX: ffff8881180b4c80 RCX: 0000000000000000\n[ 53.982634][ C1] RDX: 0000000000000002 RSI: ffff8881180b4d3c RDI: ffff88810bc9cac2\n[ 53.982634][ C1] RBP: ffff8881008f70b8 R08: ffff8881180b4cf4 R09: ffff8881180b4cf0\n[ 53.982634][ C1] R10: ffffed1022999e5c R11: 0000000000000002 R12: 0000000000000590\n[ 53.982634][ C1] R13: ffff88810f940c80 R14: ffff88810f940d50 R15: ffff88810bc9cac0\n[ 53.982634][ C1] FS: 0000000000000000(0000) GS:ffff888235880000(0000) knlGS:0000000000000000\n[ 53.982634][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\n[ 53.982634][ C1] CR2: 00007ff5f9b86680 CR3: 0000000108ce8004 CR4: 0000000000170ee0\n[ 53.982634][ C1] Call Trace:\n[ 53.982634][ C1] \u003cTASK\u003e\n[ 53.982634][ C1] tcp_sacktag_walk+0xaba/0x18e0\n[ 53.982634][ C1] tcp_sacktag_write_queue+0xe7b/0x3460\n[ 53.982634][ C1] tcp_ack+0x2666/0x54b0\n[ 53.982634][ C1] tcp_rcv_established+0x4d9/0x20f0\n[ 53.982634][ C1] tcp_v4_do_rcv+0x551/0x810\n[ 53.982634][ C1] tcp_v4_rcv+0x22ed/0x2ed0\n[ 53.982634][ C1] ip_protocol_deliver_rcu+0x96/0xaf0\n[ 53.982634][ C1] ip_local_deliver_finish+0x1e0/0x2f0\n[ 53.982634][ C1] ip_sublist_rcv_finish+0x211/0x440\n[ 53.982634][ C1] ip_list_rcv_finish.constprop.0+0x424/0x660\n[ 53.982634][ C1] ip_list_rcv+0x2c8/0x410\n[ 53.982634][ C1] __netif_receive_skb_list_core+0x65c/0x910\n[ 53.982634][ C1] netif_receive_skb_list_internal+0x5f9/0xcb0\n[ 53.982634][ C1] napi_complete_done+0x188/0x6e0\n[ 53.982634][ C1] gro_cell_poll+0x10c/0x1d0\n[ 53.982634][ C1] __napi_poll+0xa1/0x530\n[ 53.982634][ C1] net_rx_action+0x567/0x1270\n[ 53.982634][ C1] __do_softirq+0x28a/0x9ba\n[ 53.982634][ C1] run_ksoftirqd+0x32/0x60\n[ 53.982634][ C1] smpboot_thread_fn+0x559/0x8c0\n[ 53.982634][ C1] kthread+0x3b9/0x490\n[ 53.982634][ C1] ret_from_fork+0x22/0x30\n[ 53.982634][ C1] \u003c/TASK\u003e\n\nAddress the issue by skipping the GRO stage for shared or cloned skbs.\nTo reduce the chance of OoO, try to unclone the skbs before giving up.\n\nv1 -\u003e v2:\n - use avoid skb_copy and fallback to netif_receive_skb - Eric", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-47099", "url": "https://www.suse.com/security/cve/CVE-2021-47099" }, { "category": "external", "summary": "SUSE Bug 1220955 for CVE-2021-47099", "url": "https://bugzilla.suse.com/1220955" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2021-47099" }, { "cve": "CVE-2021-47100", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-47100" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module\n\nHi,\n\nWhen testing install and uninstall of ipmi_si.ko and ipmi_msghandler.ko,\nthe system crashed.\n\nThe log as follows:\n[ 141.087026] BUG: unable to handle kernel paging request at ffffffffc09b3a5a\n[ 141.087241] PGD 8fe4c0d067 P4D 8fe4c0d067 PUD 8fe4c0f067 PMD 103ad89067 PTE 0\n[ 141.087464] Oops: 0010 [#1] SMP NOPTI\n[ 141.087580] CPU: 67 PID: 668 Comm: kworker/67:1 Kdump: loaded Not tainted 4.18.0.x86_64 #47\n[ 141.088009] Workqueue: events 0xffffffffc09b3a40\n[ 141.088009] RIP: 0010:0xffffffffc09b3a5a\n[ 141.088009] Code: Bad RIP value.\n[ 141.088009] RSP: 0018:ffffb9094e2c3e88 EFLAGS: 00010246\n[ 141.088009] RAX: 0000000000000000 RBX: ffff9abfdb1f04a0 RCX: 0000000000000000\n[ 141.088009] RDX: 0000000000000000 RSI: 0000000000000246 RDI: 0000000000000246\n[ 141.088009] RBP: 0000000000000000 R08: ffff9abfffee3cb8 R09: 00000000000002e1\n[ 141.088009] R10: ffffb9094cb73d90 R11: 00000000000f4240 R12: ffff9abfffee8700\n[ 141.088009] R13: 0000000000000000 R14: ffff9abfdb1f04a0 R15: ffff9abfdb1f04a8\n[ 141.088009] FS: 0000000000000000(0000) GS:ffff9abfffec0000(0000) knlGS:0000000000000000\n[ 141.088009] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\n[ 141.088009] CR2: ffffffffc09b3a30 CR3: 0000008fe4c0a001 CR4: 00000000007606e0\n[ 141.088009] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000\n[ 141.088009] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400\n[ 141.088009] PKRU: 55555554\n[ 141.088009] Call Trace:\n[ 141.088009] ? process_one_work+0x195/0x390\n[ 141.088009] ? worker_thread+0x30/0x390\n[ 141.088009] ? process_one_work+0x390/0x390\n[ 141.088009] ? kthread+0x10d/0x130\n[ 141.088009] ? kthread_flush_work_fn+0x10/0x10\n[ 141.088009] ? ret_from_fork+0x35/0x40] BUG: unable to handle kernel paging request at ffffffffc0b28a5a\n[ 200.223240] PGD 97fe00d067 P4D 97fe00d067 PUD 97fe00f067 PMD a580cbf067 PTE 0\n[ 200.223464] Oops: 0010 [#1] SMP NOPTI\n[ 200.223579] CPU: 63 PID: 664 Comm: kworker/63:1 Kdump: loaded Not tainted 4.18.0.x86_64 #46\n[ 200.224008] Workqueue: events 0xffffffffc0b28a40\n[ 200.224008] RIP: 0010:0xffffffffc0b28a5a\n[ 200.224008] Code: Bad RIP value.\n[ 200.224008] RSP: 0018:ffffbf3c8e2a3e88 EFLAGS: 00010246\n[ 200.224008] RAX: 0000000000000000 RBX: ffffa0799ad6bca0 RCX: 0000000000000000\n[ 200.224008] RDX: 0000000000000000 RSI: 0000000000000246 RDI: 0000000000000246\n[ 200.224008] RBP: 0000000000000000 R08: ffff9fe43fde3cb8 R09: 00000000000000d5\n[ 200.224008] R10: ffffbf3c8cb53d90 R11: 00000000000f4240 R12: ffff9fe43fde8700\n[ 200.224008] R13: 0000000000000000 R14: ffffa0799ad6bca0 R15: ffffa0799ad6bca8\n[ 200.224008] FS: 0000000000000000(0000) GS:ffff9fe43fdc0000(0000) knlGS:0000000000000000\n[ 200.224008] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\n[ 200.224008] CR2: ffffffffc0b28a30 CR3: 00000097fe00a002 CR4: 00000000007606e0\n[ 200.224008] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000\n[ 200.224008] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400\n[ 200.224008] PKRU: 55555554\n[ 200.224008] Call Trace:\n[ 200.224008] ? process_one_work+0x195/0x390\n[ 200.224008] ? worker_thread+0x30/0x390\n[ 200.224008] ? process_one_work+0x390/0x390\n[ 200.224008] ? kthread+0x10d/0x130\n[ 200.224008] ? kthread_flush_work_fn+0x10/0x10\n[ 200.224008] ? ret_from_fork+0x35/0x40\n[ 200.224008] kernel fault(0x1) notification starting on CPU 63\n[ 200.224008] kernel fault(0x1) notification finished on CPU 63\n[ 200.224008] CR2: ffffffffc0b28a5a\n[ 200.224008] ---[ end trace c82a412d93f57412 ]---\n\nThe reason is as follows:\nT1: rmmod ipmi_si.\n -\u003eipmi_unregister_smi()\n -\u003e ipmi_bmc_unregister()\n -\u003e __ipmi_bmc_unregister()\n -\u003e kref_put(\u0026bmc-\u003eusecount, cleanup_bmc_device);\n -\u003e schedule_work(\u0026bmc-\u003eremove_work);\n\nT2: rmmod ipmi_msghandl\n---truncated---", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-47100", "url": "https://www.suse.com/security/cve/CVE-2021-47100" }, { "category": "external", "summary": "SUSE Bug 1220985 for CVE-2021-47100", "url": "https://bugzilla.suse.com/1220985" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.4, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2021-47100" }, { "cve": "CVE-2021-47101", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-47101" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nasix: fix uninit-value in asix_mdio_read()\n\nasix_read_cmd() may read less than sizeof(smsr) bytes and in this case\nsmsr will be uninitialized.\n\nFail log:\nBUG: KMSAN: uninit-value in asix_check_host_enable drivers/net/usb/asix_common.c:82 [inline]\nBUG: KMSAN: uninit-value in asix_check_host_enable drivers/net/usb/asix_common.c:82 [inline] drivers/net/usb/asix_common.c:497\nBUG: KMSAN: uninit-value in asix_mdio_read+0x3c1/0xb00 drivers/net/usb/asix_common.c:497 drivers/net/usb/asix_common.c:497\n asix_check_host_enable drivers/net/usb/asix_common.c:82 [inline]\n asix_check_host_enable drivers/net/usb/asix_common.c:82 [inline] drivers/net/usb/asix_common.c:497\n asix_mdio_read+0x3c1/0xb00 drivers/net/usb/asix_common.c:497 drivers/net/usb/asix_common.c:497", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-47101", "url": "https://www.suse.com/security/cve/CVE-2021-47101" }, { "category": "external", "summary": "SUSE Bug 1220987 for CVE-2021-47101", "url": "https://bugzilla.suse.com/1220987" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2021-47101" }, { "cve": "CVE-2021-47102", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-47102" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: marvell: prestera: fix incorrect structure access\n\nIn line:\n\tupper = info-\u003eupper_dev;\nWe access upper_dev field, which is related only for particular events\n(e.g. event == NETDEV_CHANGEUPPER). So, this line cause invalid memory\naccess for another events,\nwhen ptr is not netdev_notifier_changeupper_info.\n\nThe KASAN logs are as follows:\n\n[ 30.123165] BUG: KASAN: stack-out-of-bounds in prestera_netdev_port_event.constprop.0+0x68/0x538 [prestera]\n[ 30.133336] Read of size 8 at addr ffff80000cf772b0 by task udevd/778\n[ 30.139866]\n[ 30.141398] CPU: 0 PID: 778 Comm: udevd Not tainted 5.16.0-rc3 #6\n[ 30.147588] Hardware name: DNI AmazonGo1 A7040 board (DT)\n[ 30.153056] Call trace:\n[ 30.155547] dump_backtrace+0x0/0x2c0\n[ 30.159320] show_stack+0x18/0x30\n[ 30.162729] dump_stack_lvl+0x68/0x84\n[ 30.166491] print_address_description.constprop.0+0x74/0x2b8\n[ 30.172346] kasan_report+0x1e8/0x250\n[ 30.176102] __asan_load8+0x98/0xe0\n[ 30.179682] prestera_netdev_port_event.constprop.0+0x68/0x538 [prestera]\n[ 30.186847] prestera_netdev_event_handler+0x1b4/0x1c0 [prestera]\n[ 30.193313] raw_notifier_call_chain+0x74/0xa0\n[ 30.197860] call_netdevice_notifiers_info+0x68/0xc0\n[ 30.202924] register_netdevice+0x3cc/0x760\n[ 30.207190] register_netdev+0x24/0x50\n[ 30.211015] prestera_device_register+0x8a0/0xba0 [prestera]", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-47102", "url": "https://www.suse.com/security/cve/CVE-2021-47102" }, { "category": "external", "summary": "SUSE Bug 1221009 for CVE-2021-47102", "url": "https://bugzilla.suse.com/1221009" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2021-47102" }, { "cve": "CVE-2021-47104", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-47104" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nIB/qib: Fix memory leak in qib_user_sdma_queue_pkts()\n\nThe wrong goto label was used for the error case and missed cleanup of the\npkt allocation.\n\nAddresses-Coverity-ID: 1493352 (\"Resource leak\")", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-47104", "url": "https://www.suse.com/security/cve/CVE-2021-47104" }, { "category": "external", "summary": "SUSE Bug 1220960 for CVE-2021-47104", "url": "https://bugzilla.suse.com/1220960" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2021-47104" }, { "cve": "CVE-2021-47105", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-47105" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nice: xsk: return xsk buffers back to pool when cleaning the ring\n\nCurrently we only NULL the xdp_buff pointer in the internal SW ring but\nwe never give it back to the xsk buffer pool. This means that buffers\ncan be leaked out of the buff pool and never be used again.\n\nAdd missing xsk_buff_free() call to the routine that is supposed to\nclean the entries that are left in the ring so that these buffers in the\numem can be used by other sockets.\n\nAlso, only go through the space that is actually left to be cleaned\ninstead of a whole ring.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-47105", "url": "https://www.suse.com/security/cve/CVE-2021-47105" }, { "category": "external", "summary": "SUSE Bug 1220961 for CVE-2021-47105", "url": "https://bugzilla.suse.com/1220961" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 3.3, "baseSeverity": "LOW", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "low" } ], "title": "CVE-2021-47105" }, { "cve": "CVE-2021-47107", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-47107" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nNFSD: Fix READDIR buffer overflow\n\nIf a client sends a READDIR count argument that is too small (say,\nzero), then the buffer size calculation in the new init_dirlist\nhelper functions results in an underflow, allowing the XDR stream\nfunctions to write beyond the actual buffer.\n\nThis calculation has always been suspect. NFSD has never sanity-\nchecked the READDIR count argument, but the old entry encoders\nmanaged the problem correctly.\n\nWith the commits below, entry encoding changed, exposing the\nunderflow to the pointer arithmetic in xdr_reserve_space().\n\nModern NFS clients attempt to retrieve as much data as possible\nfor each READDIR request. Also, we have no unit tests that\nexercise the behavior of READDIR at the lower bound of @count\nvalues. Thus this case was missed during testing.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-47107", "url": "https://www.suse.com/security/cve/CVE-2021-47107" }, { "category": "external", "summary": "SUSE Bug 1220965 for CVE-2021-47107", "url": "https://bugzilla.suse.com/1220965" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6.3, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2021-47107" }, { "cve": "CVE-2021-47108", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-47108" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/mediatek: hdmi: Perform NULL pointer check for mtk_hdmi_conf\n\nIn commit 41ca9caaae0b\n(\"drm/mediatek: hdmi: Add check for CEA modes only\") a check\nfor CEA modes was added to function mtk_hdmi_bridge_mode_valid()\nin order to address possible issues on MT8167;\nmoreover, with commit c91026a938c2\n(\"drm/mediatek: hdmi: Add optional limit on maximal HDMI mode clock\")\nanother similar check was introduced.\n\nUnfortunately though, at the time of writing, MT8173 does not provide\nany mtk_hdmi_conf structure and this is crashing the kernel with NULL\npointer upon entering mtk_hdmi_bridge_mode_valid(), which happens as\nsoon as a HDMI cable gets plugged in.\n\nTo fix this regression, add a NULL pointer check for hdmi-\u003econf in the\nsaid function, restoring HDMI functionality and avoiding NULL pointer\nkernel panics.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-47108", "url": "https://www.suse.com/security/cve/CVE-2021-47108" }, { "category": "external", "summary": "SUSE Bug 1220986 for CVE-2021-47108", "url": "https://bugzilla.suse.com/1220986" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2021-47108" }, { "cve": "CVE-2021-47181", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-47181" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nusb: musb: tusb6010: check return value after calling platform_get_resource()\n\nIt will cause null-ptr-deref if platform_get_resource() returns NULL,\nwe need check the return value.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-47181", "url": "https://www.suse.com/security/cve/CVE-2021-47181" }, { "category": "external", "summary": "SUSE Bug 1222660 for CVE-2021-47181", "url": "https://bugzilla.suse.com/1222660" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2021-47181" }, { "cve": "CVE-2021-47182", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-47182" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: core: Fix scsi_mode_sense() buffer length handling\n\nSeveral problems exist with scsi_mode_sense() buffer length handling:\n\n 1) The allocation length field of the MODE SENSE(10) command is 16-bits,\n occupying bytes 7 and 8 of the CDB. With this command, access to mode\n pages larger than 255 bytes is thus possible. However, the CDB\n allocation length field is set by assigning len to byte 8 only, thus\n truncating buffer length larger than 255.\n\n 2) If scsi_mode_sense() is called with len smaller than 8 with\n sdev-\u003euse_10_for_ms set, or smaller than 4 otherwise, the buffer length\n is increased to 8 and 4 respectively, and the buffer is zero filled\n with these increased values, thus corrupting the memory following the\n buffer.\n\nFix these 2 problems by using put_unaligned_be16() to set the allocation\nlength field of MODE SENSE(10) CDB and by returning an error when len is\ntoo small.\n\nFurthermore, if len is larger than 255B, always try MODE SENSE(10) first,\neven if the device driver did not set sdev-\u003euse_10_for_ms. In case of\ninvalid opcode error for MODE SENSE(10), access to mode pages larger than\n255 bytes are not retried using MODE SENSE(6). To avoid buffer length\noverflows for the MODE_SENSE(10) case, check that len is smaller than 65535\nbytes.\n\nWhile at it, also fix the folowing:\n\n * Use get_unaligned_be16() to retrieve the mode data length and block\n descriptor length fields of the mode sense reply header instead of using\n an open coded calculation.\n\n * Fix the kdoc dbd argument explanation: the DBD bit stands for Disable\n Block Descriptor, which is the opposite of what the dbd argument\n description was.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-47182", "url": "https://www.suse.com/security/cve/CVE-2021-47182" }, { "category": "external", "summary": "SUSE Bug 1222662 for CVE-2021-47182", "url": "https://bugzilla.suse.com/1222662" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2021-47182" }, { "cve": "CVE-2021-47183", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-47183" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: lpfc: Fix link down processing to address NULL pointer dereference\n\nIf an FC link down transition while PLOGIs are outstanding to fabric well\nknown addresses, outstanding ABTS requests may result in a NULL pointer\ndereference. Driver unload requests may hang with repeated \"2878\" log\nmessages.\n\nThe Link down processing results in ABTS requests for outstanding ELS\nrequests. The Abort WQEs are sent for the ELSs before the driver had set\nthe link state to down. Thus the driver is sending the Abort with the\nexpectation that an ABTS will be sent on the wire. The Abort request is\nstalled waiting for the link to come up. In some conditions the driver may\nauto-complete the ELSs thus if the link does come up, the Abort completions\nmay reference an invalid structure.\n\nFix by ensuring that Abort set the flag to avoid link traffic if issued due\nto conditions where the link failed.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-47183", "url": "https://www.suse.com/security/cve/CVE-2021-47183" }, { "category": "external", "summary": "SUSE Bug 1222664 for CVE-2021-47183", "url": "https://bugzilla.suse.com/1222664" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2021-47183" }, { "cve": "CVE-2021-47185", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-47185" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ntty: tty_buffer: Fix the softlockup issue in flush_to_ldisc\n\nWhen running ltp testcase(ltp/testcases/kernel/pty/pty04.c) with arm64, there is a soft lockup,\nwhich look like this one:\n\n Workqueue: events_unbound flush_to_ldisc\n Call trace:\n dump_backtrace+0x0/0x1ec\n show_stack+0x24/0x30\n dump_stack+0xd0/0x128\n panic+0x15c/0x374\n watchdog_timer_fn+0x2b8/0x304\n __run_hrtimer+0x88/0x2c0\n __hrtimer_run_queues+0xa4/0x120\n hrtimer_interrupt+0xfc/0x270\n arch_timer_handler_phys+0x40/0x50\n handle_percpu_devid_irq+0x94/0x220\n __handle_domain_irq+0x88/0xf0\n gic_handle_irq+0x84/0xfc\n el1_irq+0xc8/0x180\n slip_unesc+0x80/0x214 [slip]\n tty_ldisc_receive_buf+0x64/0x80\n tty_port_default_receive_buf+0x50/0x90\n flush_to_ldisc+0xbc/0x110\n process_one_work+0x1d4/0x4b0\n worker_thread+0x180/0x430\n kthread+0x11c/0x120\n\nIn the testcase pty04, The first process call the write syscall to send\ndata to the pty master. At the same time, the workqueue will do the\nflush_to_ldisc to pop data in a loop until there is no more data left.\nWhen the sender and workqueue running in different core, the sender sends\ndata fastly in full time which will result in workqueue doing work in loop\nfor a long time and occuring softlockup in flush_to_ldisc with kernel\nconfigured without preempt. So I add need_resched check and cond_resched\nin the flush_to_ldisc loop to avoid it.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-47185", "url": "https://www.suse.com/security/cve/CVE-2021-47185" }, { "category": "external", "summary": "SUSE Bug 1222669 for CVE-2021-47185", "url": "https://bugzilla.suse.com/1222669" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2021-47185" }, { "cve": "CVE-2021-47189", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2021-47189" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nbtrfs: fix memory ordering between normal and ordered work functions\n\nOrdered work functions aren\u0027t guaranteed to be handled by the same thread\nwhich executed the normal work functions. The only way execution between\nnormal/ordered functions is synchronized is via the WORK_DONE_BIT,\nunfortunately the used bitops don\u0027t guarantee any ordering whatsoever.\n\nThis manifested as seemingly inexplicable crashes on ARM64, where\nasync_chunk::inode is seen as non-null in async_cow_submit which causes\nsubmit_compressed_extents to be called and crash occurs because\nasync_chunk::inode suddenly became NULL. The call trace was similar to:\n\n pc : submit_compressed_extents+0x38/0x3d0\n lr : async_cow_submit+0x50/0xd0\n sp : ffff800015d4bc20\n\n \u003cregisters omitted for brevity\u003e\n\n Call trace:\n submit_compressed_extents+0x38/0x3d0\n async_cow_submit+0x50/0xd0\n run_ordered_work+0xc8/0x280\n btrfs_work_helper+0x98/0x250\n process_one_work+0x1f0/0x4ac\n worker_thread+0x188/0x504\n kthread+0x110/0x114\n ret_from_fork+0x10/0x18\n\nFix this by adding respective barrier calls which ensure that all\naccesses preceding setting of WORK_DONE_BIT are strictly ordered before\nsetting the flag. At the same time add a read barrier after reading of\nWORK_DONE_BIT in run_ordered_work which ensures all subsequent loads\nwould be strictly ordered after reading the bit. This in turn ensures\nare all accesses before WORK_DONE_BIT are going to be strictly ordered\nbefore any access that can occur in ordered_func.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2021-47189", "url": "https://www.suse.com/security/cve/CVE-2021-47189" }, { "category": "external", "summary": "SUSE Bug 1222706 for CVE-2021-47189", "url": "https://bugzilla.suse.com/1222706" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2021-47189" }, { "cve": "CVE-2022-4744", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2022-4744" } ], "notes": [ { "category": "general", "text": "A double-free flaw was found in the Linux kernel\u0027s TUN/TAP device driver functionality in how a user registers the device when the register_netdevice function fails (NETDEV_REGISTER notifier). This flaw allows a local user to crash or potentially escalate their privileges on the system.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2022-4744", "url": "https://www.suse.com/security/cve/CVE-2022-4744" }, { "category": "external", "summary": "SUSE Bug 1209635 for CVE-2022-4744", "url": "https://bugzilla.suse.com/1209635" }, { "category": "external", "summary": "SUSE Bug 1209672 for CVE-2022-4744", "url": "https://bugzilla.suse.com/1209672" }, { "category": "external", "summary": "SUSE Bug 1211833 for CVE-2022-4744", "url": "https://bugzilla.suse.com/1211833" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 7.8, "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "important" } ], "title": "CVE-2022-4744" }, { "cve": "CVE-2022-48626", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2022-48626" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nmoxart: fix potential use-after-free on remove path\n\nIt was reported that the mmc host structure could be accessed after it\nwas freed in moxart_remove(), so fix this by saving the base register of\nthe device and using it instead of the pointer dereference.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2022-48626", "url": "https://www.suse.com/security/cve/CVE-2022-48626" }, { "category": "external", "summary": "SUSE Bug 1220366 for CVE-2022-48626", "url": "https://bugzilla.suse.com/1220366" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.3, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2022-48626" }, { "cve": "CVE-2022-48629", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2022-48629" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ncrypto: qcom-rng - ensure buffer for generate is completely filled\n\nThe generate function in struct rng_alg expects that the destination\nbuffer is completely filled if the function returns 0. qcom_rng_read()\ncan run into a situation where the buffer is partially filled with\nrandomness and the remaining part of the buffer is zeroed since\nqcom_rng_generate() doesn\u0027t check the return value. This issue can\nbe reproduced by running the following from libkcapi:\n\n kcapi-rng -b 9000000 \u003e OUTFILE\n\nThe generated OUTFILE will have three huge sections that contain all\nzeros, and this is caused by the code where the test\n\u0027val \u0026 PRNG_STATUS_DATA_AVAIL\u0027 fails.\n\nLet\u0027s fix this issue by ensuring that qcom_rng_read() always returns\nwith a full buffer if the function returns success. Let\u0027s also have\nqcom_rng_generate() return the correct value.\n\nHere\u0027s some statistics from the ent project\n(https://www.fourmilab.ch/random/) that shows information about the\nquality of the generated numbers:\n\n $ ent -c qcom-random-before\n Value Char Occurrences Fraction\n 0 606748 0.067416\n 1 33104 0.003678\n 2 33001 0.003667\n ...\n 253 \ufffd 32883 0.003654\n 254 \ufffd 33035 0.003671\n 255 \ufffd 33239 0.003693\n\n Total: 9000000 1.000000\n\n Entropy = 7.811590 bits per byte.\n\n Optimum compression would reduce the size\n of this 9000000 byte file by 2 percent.\n\n Chi square distribution for 9000000 samples is 9329962.81, and\n randomly would exceed this value less than 0.01 percent of the\n times.\n\n Arithmetic mean value of data bytes is 119.3731 (127.5 = random).\n Monte Carlo value for Pi is 3.197293333 (error 1.77 percent).\n Serial correlation coefficient is 0.159130 (totally uncorrelated =\n 0.0).\n\nWithout this patch, the results of the chi-square test is 0.01%, and\nthe numbers are certainly not random according to ent\u0027s project page.\nThe results improve with this patch:\n\n $ ent -c qcom-random-after\n Value Char Occurrences Fraction\n 0 35432 0.003937\n 1 35127 0.003903\n 2 35424 0.003936\n ...\n 253 \ufffd 35201 0.003911\n 254 \ufffd 34835 0.003871\n 255 \ufffd 35368 0.003930\n\n Total: 9000000 1.000000\n\n Entropy = 7.999979 bits per byte.\n\n Optimum compression would reduce the size\n of this 9000000 byte file by 0 percent.\n\n Chi square distribution for 9000000 samples is 258.77, and randomly\n would exceed this value 42.24 percent of the times.\n\n Arithmetic mean value of data bytes is 127.5006 (127.5 = random).\n Monte Carlo value for Pi is 3.141277333 (error 0.01 percent).\n Serial correlation coefficient is 0.000468 (totally uncorrelated =\n 0.0).\n\nThis change was tested on a Nexus 5 phone (msm8974 SoC).", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2022-48629", "url": "https://www.suse.com/security/cve/CVE-2022-48629" }, { "category": "external", "summary": "SUSE Bug 1220989 for CVE-2022-48629", "url": "https://bugzilla.suse.com/1220989" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2022-48629" }, { "cve": "CVE-2022-48630", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2022-48630" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ncrypto: qcom-rng - fix infinite loop on requests not multiple of WORD_SZ\n\nThe commit referenced in the Fixes tag removed the \u0027break\u0027 from the else\nbranch in qcom_rng_read(), causing an infinite loop whenever \u0027max\u0027 is\nnot a multiple of WORD_SZ. This can be reproduced e.g. by running:\n\n kcapi-rng -b 67 \u003e/dev/null\n\nThere are many ways to fix this without adding back the \u0027break\u0027, but\nthey all seem more awkward than simply adding it back, so do just that.\n\nTested on a machine with Qualcomm Amberwing processor.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2022-48630", "url": "https://www.suse.com/security/cve/CVE-2022-48630" }, { "category": "external", "summary": "SUSE Bug 1220990 for CVE-2022-48630", "url": "https://bugzilla.suse.com/1220990" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2022-48630" }, { "cve": "CVE-2023-0160", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-0160" } ], "notes": [ { "category": "general", "text": "A deadlock flaw was found in the Linux kernel\u0027s BPF subsystem. This flaw allows a local user to potentially crash the system.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-0160", "url": "https://www.suse.com/security/cve/CVE-2023-0160" }, { "category": "external", "summary": "SUSE Bug 1209657 for CVE-2023-0160", "url": "https://bugzilla.suse.com/1209657" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.7, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-0160" }, { "cve": "CVE-2023-28746", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-28746" } ], "notes": [ { "category": "general", "text": "Information exposure through microarchitectural state after transient execution from some register files for some Intel(R) Atom(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-28746", "url": "https://www.suse.com/security/cve/CVE-2023-28746" }, { "category": "external", "summary": "SUSE Bug 1213456 for CVE-2023-28746", "url": "https://bugzilla.suse.com/1213456" }, { "category": "external", "summary": "SUSE Bug 1221323 for CVE-2023-28746", "url": "https://bugzilla.suse.com/1221323" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-28746" }, { "cve": "CVE-2023-35827", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-35827" } ], "notes": [ { "category": "general", "text": "An issue was discovered in the Linux kernel through 6.3.8. A use-after-free was found in ravb_remove in drivers/net/ethernet/renesas/ravb_main.c.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-35827", "url": "https://www.suse.com/security/cve/CVE-2023-35827" }, { "category": "external", "summary": "SUSE Bug 1212514 for CVE-2023-35827", "url": "https://bugzilla.suse.com/1212514" }, { "category": "external", "summary": "SUSE Bug 1224298 for CVE-2023-35827", "url": "https://bugzilla.suse.com/1224298" }, { "category": "external", "summary": "SUSE Bug 1224878 for CVE-2023-35827", "url": "https://bugzilla.suse.com/1224878" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6.4, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-35827" }, { "cve": "CVE-2023-4881", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-4881" } ], "notes": [ { "category": "general", "text": "CVE-2023-4881 was wrongly assigned to a bug that was deemed to be a non-security issue by the Linux kernel security team.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-4881", "url": "https://www.suse.com/security/cve/CVE-2023-4881" }, { "category": "external", "summary": "SUSE Bug 1215221 for CVE-2023-4881", "url": "https://bugzilla.suse.com/1215221" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6.1, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:L", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-4881" }, { "cve": "CVE-2023-52447", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52447" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Defer the free of inner map when necessary\n\nWhen updating or deleting an inner map in map array or map htab, the map\nmay still be accessed by non-sleepable program or sleepable program.\nHowever bpf_map_fd_put_ptr() decreases the ref-counter of the inner map\ndirectly through bpf_map_put(), if the ref-counter is the last one\n(which is true for most cases), the inner map will be freed by\nops-\u003emap_free() in a kworker. But for now, most .map_free() callbacks\ndon\u0027t use synchronize_rcu() or its variants to wait for the elapse of a\nRCU grace period, so after the invocation of ops-\u003emap_free completes,\nthe bpf program which is accessing the inner map may incur\nuse-after-free problem.\n\nFix the free of inner map by invoking bpf_map_free_deferred() after both\none RCU grace period and one tasks trace RCU grace period if the inner\nmap has been removed from the outer map before. The deferment is\naccomplished by using call_rcu() or call_rcu_tasks_trace() when\nreleasing the last ref-counter of bpf map. The newly-added rcu_head\nfield in bpf_map shares the same storage space with work field to\nreduce the size of bpf_map.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52447", "url": "https://www.suse.com/security/cve/CVE-2023-52447" }, { "category": "external", "summary": "SUSE Bug 1220251 for CVE-2023-52447", "url": "https://bugzilla.suse.com/1220251" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6.7, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52447" }, { "cve": "CVE-2023-52450", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52450" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nperf/x86/intel/uncore: Fix NULL pointer dereference issue in upi_fill_topology()\n\nGet logical socket id instead of physical id in discover_upi_topology()\nto avoid out-of-bound access on \u0027upi = \u0026type-\u003etopology[nid][idx];\u0027 line\nthat leads to NULL pointer dereference in upi_fill_topology()", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52450", "url": "https://www.suse.com/security/cve/CVE-2023-52450" }, { "category": "external", "summary": "SUSE Bug 1220237 for CVE-2023-52450", "url": "https://bugzilla.suse.com/1220237" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52450" }, { "cve": "CVE-2023-52453", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52453" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nhisi_acc_vfio_pci: Update migration data pointer correctly on saving/resume\n\nWhen the optional PRE_COPY support was added to speed up the device\ncompatibility check, it failed to update the saving/resuming data\npointers based on the fd offset. This results in migration data\ncorruption and when the device gets started on the destination the\nfollowing error is reported in some cases,\n\n[ 478.907684] arm-smmu-v3 arm-smmu-v3.2.auto: event 0x10 received:\n[ 478.913691] arm-smmu-v3 arm-smmu-v3.2.auto: 0x0000310200000010\n[ 478.919603] arm-smmu-v3 arm-smmu-v3.2.auto: 0x000002088000007f\n[ 478.925515] arm-smmu-v3 arm-smmu-v3.2.auto: 0x0000000000000000\n[ 478.931425] arm-smmu-v3 arm-smmu-v3.2.auto: 0x0000000000000000\n[ 478.947552] hisi_zip 0000:31:00.0: qm_axi_rresp [error status=0x1] found\n[ 478.955930] hisi_zip 0000:31:00.0: qm_db_timeout [error status=0x400] found\n[ 478.955944] hisi_zip 0000:31:00.0: qm sq doorbell timeout in function 2", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52453", "url": "https://www.suse.com/security/cve/CVE-2023-52453" }, { "category": "external", "summary": "SUSE Bug 1220337 for CVE-2023-52453", "url": "https://bugzilla.suse.com/1220337" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52453" }, { "cve": "CVE-2023-52454", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52454" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length\n\nIf the host sends an H2CData command with an invalid DATAL,\nthe kernel may crash in nvmet_tcp_build_pdu_iovec().\n\nUnable to handle kernel NULL pointer dereference at\nvirtual address 0000000000000000\nlr : nvmet_tcp_io_work+0x6ac/0x718 [nvmet_tcp]\nCall trace:\n process_one_work+0x174/0x3c8\n worker_thread+0x2d0/0x3e8\n kthread+0x104/0x110\n\nFix the bug by raising a fatal error if DATAL isn\u0027t coherent\nwith the packet size.\nAlso, the PDU length should never exceed the MAXH2CDATA parameter which\nhas been communicated to the host in nvmet_tcp_handle_icreq().", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52454", "url": "https://www.suse.com/security/cve/CVE-2023-52454" }, { "category": "external", "summary": "SUSE Bug 1220320 for CVE-2023-52454", "url": "https://bugzilla.suse.com/1220320" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52454" }, { "cve": "CVE-2023-52469", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52469" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrivers/amd/pm: fix a use-after-free in kv_parse_power_table\n\nWhen ps allocated by kzalloc equals to NULL, kv_parse_power_table\nfrees adev-\u003epm.dpm.ps that allocated before. However, after the control\nflow goes through the following call chains:\n\nkv_parse_power_table\n |-\u003e kv_dpm_init\n |-\u003e kv_dpm_sw_init\n\t |-\u003e kv_dpm_fini\n\nThe adev-\u003epm.dpm.ps is used in the for loop of kv_dpm_fini after its\nfirst free in kv_parse_power_table and causes a use-after-free bug.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52469", "url": "https://www.suse.com/security/cve/CVE-2023-52469" }, { "category": "external", "summary": "SUSE Bug 1220411 for CVE-2023-52469", "url": "https://bugzilla.suse.com/1220411" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.3, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52469" }, { "cve": "CVE-2023-52470", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52470" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/radeon: check the alloc_workqueue return value in radeon_crtc_init()\n\ncheck the alloc_workqueue return value in radeon_crtc_init()\nto avoid null-ptr-deref.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52470", "url": "https://www.suse.com/security/cve/CVE-2023-52470" }, { "category": "external", "summary": "SUSE Bug 1220413 for CVE-2023-52470", "url": "https://bugzilla.suse.com/1220413" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52470" }, { "cve": "CVE-2023-52474", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52474" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nIB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iovec user SDMA requests\n\nhfi1 user SDMA request processing has two bugs that can cause data\ncorruption for user SDMA requests that have multiple payload iovecs\nwhere an iovec other than the tail iovec does not run up to the page\nboundary for the buffer pointed to by that iovec.a\n\nHere are the specific bugs:\n1. user_sdma_txadd() does not use struct user_sdma_iovec-\u003eiov.iov_len.\n Rather, user_sdma_txadd() will add up to PAGE_SIZE bytes from iovec\n to the packet, even if some of those bytes are past\n iovec-\u003eiov.iov_len and are thus not intended to be in the packet.\n2. user_sdma_txadd() and user_sdma_send_pkts() fail to advance to the\n next iovec in user_sdma_request-\u003eiovs when the current iovec\n is not PAGE_SIZE and does not contain enough data to complete the\n packet. The transmitted packet will contain the wrong data from the\n iovec pages.\n\nThis has not been an issue with SDMA packets from hfi1 Verbs or PSM2\nbecause they only produce iovecs that end short of PAGE_SIZE as the tail\niovec of an SDMA request.\n\nFixing these bugs exposes other bugs with the SDMA pin cache\n(struct mmu_rb_handler) that get in way of supporting user SDMA requests\nwith multiple payload iovecs whose buffers do not end at PAGE_SIZE. So\nthis commit fixes those issues as well.\n\nHere are the mmu_rb_handler bugs that non-PAGE_SIZE-end multi-iovec\npayload user SDMA requests can hit:\n1. Overlapping memory ranges in mmu_rb_handler will result in duplicate\n pinnings.\n2. When extending an existing mmu_rb_handler entry (struct mmu_rb_node),\n the mmu_rb code (1) removes the existing entry under a lock, (2)\n releases that lock, pins the new pages, (3) then reacquires the lock\n to insert the extended mmu_rb_node.\n\n If someone else comes in and inserts an overlapping entry between (2)\n and (3), insert in (3) will fail.\n\n The failure path code in this case unpins _all_ pages in either the\n original mmu_rb_node or the new mmu_rb_node that was inserted between\n (2) and (3).\n3. In hfi1_mmu_rb_remove_unless_exact(), mmu_rb_node-\u003erefcount is\n incremented outside of mmu_rb_handler-\u003elock. As a result, mmu_rb_node\n could be evicted by another thread that gets mmu_rb_handler-\u003elock and\n checks mmu_rb_node-\u003erefcount before mmu_rb_node-\u003erefcount is\n incremented.\n4. Related to #2 above, SDMA request submission failure path does not\n check mmu_rb_node-\u003erefcount before freeing mmu_rb_node object.\n\n If there are other SDMA requests in progress whose iovecs have\n pointers to the now-freed mmu_rb_node(s), those pointers to the\n now-freed mmu_rb nodes will be dereferenced when those SDMA requests\n complete.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52474", "url": "https://www.suse.com/security/cve/CVE-2023-52474" }, { "category": "external", "summary": "SUSE Bug 1220445 for CVE-2023-52474", "url": "https://bugzilla.suse.com/1220445" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 3.3, "baseSeverity": "LOW", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52474" }, { "cve": "CVE-2023-52476", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52476" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nperf/x86/lbr: Filter vsyscall addresses\n\nWe found that a panic can occur when a vsyscall is made while LBR sampling\nis active. If the vsyscall is interrupted (NMI) for perf sampling, this\ncall sequence can occur (most recent at top):\n\n __insn_get_emulate_prefix()\n insn_get_emulate_prefix()\n insn_get_prefixes()\n insn_get_opcode()\n decode_branch_type()\n get_branch_type()\n intel_pmu_lbr_filter()\n intel_pmu_handle_irq()\n perf_event_nmi_handler()\n\nWithin __insn_get_emulate_prefix() at frame 0, a macro is called:\n\n peek_nbyte_next(insn_byte_t, insn, i)\n\nWithin this macro, this dereference occurs:\n\n (insn)-\u003enext_byte\n\nInspecting registers at this point, the value of the next_byte field is the\naddress of the vsyscall made, for example the location of the vsyscall\nversion of gettimeofday() at 0xffffffffff600000. The access to an address\nin the vsyscall region will trigger an oops due to an unhandled page fault.\n\nTo fix the bug, filtering for vsyscalls can be done when\ndetermining the branch type. This patch will return\na \"none\" branch if a kernel address if found to lie in the\nvsyscall region.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52476", "url": "https://www.suse.com/security/cve/CVE-2023-52476" }, { "category": "external", "summary": "SUSE Bug 1220703 for CVE-2023-52476", "url": "https://bugzilla.suse.com/1220703" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.7, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52476" }, { "cve": "CVE-2023-52477", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52477" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nusb: hub: Guard against accesses to uninitialized BOS descriptors\n\nMany functions in drivers/usb/core/hub.c and drivers/usb/core/hub.h\naccess fields inside udev-\u003ebos without checking if it was allocated and\ninitialized. If usb_get_bos_descriptor() fails for whatever\nreason, udev-\u003ebos will be NULL and those accesses will result in a\ncrash:\n\nBUG: kernel NULL pointer dereference, address: 0000000000000018\nPGD 0 P4D 0\nOops: 0000 [#1] PREEMPT SMP NOPTI\nCPU: 5 PID: 17818 Comm: kworker/5:1 Tainted: G W 5.15.108-18910-gab0e1cb584e1 #1 \u003cHASH:1f9e 1\u003e\nHardware name: Google Kindred/Kindred, BIOS Google_Kindred.12672.413.0 02/03/2021\nWorkqueue: usb_hub_wq hub_event\nRIP: 0010:hub_port_reset+0x193/0x788\nCode: 89 f7 e8 20 f7 15 00 48 8b 43 08 80 b8 96 03 00 00 03 75 36 0f b7 88 92 03 00 00 81 f9 10 03 00 00 72 27 48 8b 80 a8 03 00 00 \u003c48\u003e 83 78 18 00 74 19 48 89 df 48 8b 75 b0 ba 02 00 00 00 4c 89 e9\nRSP: 0018:ffffab740c53fcf8 EFLAGS: 00010246\nRAX: 0000000000000000 RBX: ffffa1bc5f678000 RCX: 0000000000000310\nRDX: fffffffffffffdff RSI: 0000000000000286 RDI: ffffa1be9655b840\nRBP: ffffab740c53fd70 R08: 00001b7d5edaa20c R09: ffffffffb005e060\nR10: 0000000000000001 R11: 0000000000000000 R12: 0000000000000000\nR13: ffffab740c53fd3e R14: 0000000000000032 R15: 0000000000000000\nFS: 0000000000000000(0000) GS:ffffa1be96540000(0000) knlGS:0000000000000000\nCS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\nCR2: 0000000000000018 CR3: 000000022e80c005 CR4: 00000000003706e0\nCall Trace:\nhub_event+0x73f/0x156e\n? hub_activate+0x5b7/0x68f\nprocess_one_work+0x1a2/0x487\nworker_thread+0x11a/0x288\nkthread+0x13a/0x152\n? process_one_work+0x487/0x487\n? kthread_associate_blkcg+0x70/0x70\nret_from_fork+0x1f/0x30\n\nFall back to a default behavior if the BOS descriptor isn\u0027t accessible\nand skip all the functionalities that depend on it: LPM support checks,\nSuper Speed capabilitiy checks, U1/U2 states setup.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52477", "url": "https://www.suse.com/security/cve/CVE-2023-52477" }, { "category": "external", "summary": "SUSE Bug 1220790 for CVE-2023-52477", "url": "https://bugzilla.suse.com/1220790" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52477" }, { "cve": "CVE-2023-52481", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52481" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\narm64: errata: Add Cortex-A520 speculative unprivileged load workaround\n\nImplement the workaround for ARM Cortex-A520 erratum 2966298. On an\naffected Cortex-A520 core, a speculatively executed unprivileged load\nmight leak data from a privileged load via a cache side channel. The\nissue only exists for loads within a translation regime with the same\ntranslation (e.g. same ASID and VMID). Therefore, the issue only affects\nthe return to EL0.\n\nThe workaround is to execute a TLBI before returning to EL0 after all\nloads of privileged data. A non-shareable TLBI to any address is\nsufficient.\n\nThe workaround isn\u0027t necessary if page table isolation (KPTI) is\nenabled, but for simplicity it will be. Page table isolation should\nnormally be disabled for Cortex-A520 as it supports the CSV3 feature\nand the E0PD feature (used when KASLR is enabled).", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52481", "url": "https://www.suse.com/security/cve/CVE-2023-52481" }, { "category": "external", "summary": "SUSE Bug 1220887 for CVE-2023-52481", "url": "https://bugzilla.suse.com/1220887" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52481" }, { "cve": "CVE-2023-52484", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52484" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\niommu/arm-smmu-v3: Fix soft lockup triggered by arm_smmu_mm_invalidate_range\n\nWhen running an SVA case, the following soft lockup is triggered:\n--------------------------------------------------------------------\nwatchdog: BUG: soft lockup - CPU#244 stuck for 26s!\npstate: 83400009 (Nzcv daif +PAN -UAO +TCO +DIT -SSBS BTYPE=--)\npc : arm_smmu_cmdq_issue_cmdlist+0x178/0xa50\nlr : arm_smmu_cmdq_issue_cmdlist+0x150/0xa50\nsp : ffff8000d83ef290\nx29: ffff8000d83ef290 x28: 000000003b9aca00 x27: 0000000000000000\nx26: ffff8000d83ef3c0 x25: da86c0812194a0e8 x24: 0000000000000000\nx23: 0000000000000040 x22: ffff8000d83ef340 x21: ffff0000c63980c0\nx20: 0000000000000001 x19: ffff0000c6398080 x18: 0000000000000000\nx17: 0000000000000000 x16: 0000000000000000 x15: ffff3000b4a3bbb0\nx14: ffff3000b4a30888 x13: ffff3000b4a3cf60 x12: 0000000000000000\nx11: 0000000000000000 x10: 0000000000000000 x9 : ffffc08120e4d6bc\nx8 : 0000000000000000 x7 : 0000000000000000 x6 : 0000000000048cfa\nx5 : 0000000000000000 x4 : 0000000000000001 x3 : 000000000000000a\nx2 : 0000000080000000 x1 : 0000000000000000 x0 : 0000000000000001\nCall trace:\n arm_smmu_cmdq_issue_cmdlist+0x178/0xa50\n __arm_smmu_tlb_inv_range+0x118/0x254\n arm_smmu_tlb_inv_range_asid+0x6c/0x130\n arm_smmu_mm_invalidate_range+0xa0/0xa4\n __mmu_notifier_invalidate_range_end+0x88/0x120\n unmap_vmas+0x194/0x1e0\n unmap_region+0xb4/0x144\n do_mas_align_munmap+0x290/0x490\n do_mas_munmap+0xbc/0x124\n __vm_munmap+0xa8/0x19c\n __arm64_sys_munmap+0x28/0x50\n invoke_syscall+0x78/0x11c\n el0_svc_common.constprop.0+0x58/0x1c0\n do_el0_svc+0x34/0x60\n el0_svc+0x2c/0xd4\n el0t_64_sync_handler+0x114/0x140\n el0t_64_sync+0x1a4/0x1a8\n--------------------------------------------------------------------\n\nNote that since 6.6-rc1 the arm_smmu_mm_invalidate_range above is renamed\nto \"arm_smmu_mm_arch_invalidate_secondary_tlbs\", yet the problem remains.\n\nThe commit 06ff87bae8d3 (\"arm64: mm: remove unused functions and variable\nprotoypes\") fixed a similar lockup on the CPU MMU side. Yet, it can occur\nto SMMU too, since arm_smmu_mm_arch_invalidate_secondary_tlbs() is called\ntypically next to MMU tlb flush function, e.g.\n\ttlb_flush_mmu_tlbonly {\n\t\ttlb_flush {\n\t\t\t__flush_tlb_range {\n\t\t\t\t// check MAX_TLBI_OPS\n\t\t\t}\n\t\t}\n\t\tmmu_notifier_arch_invalidate_secondary_tlbs {\n\t\t\tarm_smmu_mm_arch_invalidate_secondary_tlbs {\n\t\t\t\t// does not check MAX_TLBI_OPS\n\t\t\t}\n\t\t}\n\t}\n\nClone a CMDQ_MAX_TLBI_OPS from the MAX_TLBI_OPS in tlbflush.h, since in an\nSVA case SMMU uses the CPU page table, so it makes sense to align with the\ntlbflush code. Then, replace per-page TLBI commands with a single per-asid\nTLBI command, if the request size hits this threshold.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52484", "url": "https://www.suse.com/security/cve/CVE-2023-52484" }, { "category": "external", "summary": "SUSE Bug 1220797 for CVE-2023-52484", "url": "https://bugzilla.suse.com/1220797" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52484" }, { "cve": "CVE-2023-52486", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52486" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm: Don\u0027t unref the same fb many times by mistake due to deadlock handling\n\nIf we get a deadlock after the fb lookup in drm_mode_page_flip_ioctl()\nwe proceed to unref the fb and then retry the whole thing from the top.\nBut we forget to reset the fb pointer back to NULL, and so if we then\nget another error during the retry, before the fb lookup, we proceed\nthe unref the same fb again without having gotten another reference.\nThe end result is that the fb will (eventually) end up being freed\nwhile it\u0027s still in use.\n\nReset fb to NULL once we\u0027ve unreffed it to avoid doing it again\nuntil we\u0027ve done another fb lookup.\n\nThis turned out to be pretty easy to hit on a DG2 when doing async\nflips (and CONFIG_DEBUG_WW_MUTEX_SLOWPATH=y). The first symptom I\nsaw that drm_closefb() simply got stuck in a busy loop while walking\nthe framebuffer list. Fortunately I was able to convince it to oops\ninstead, and from there it was easier to track down the culprit.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52486", "url": "https://www.suse.com/security/cve/CVE-2023-52486" }, { "category": "external", "summary": "SUSE Bug 1221277 for CVE-2023-52486", "url": "https://bugzilla.suse.com/1221277" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52486" }, { "cve": "CVE-2023-52488", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52488" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nserial: sc16is7xx: convert from _raw_ to _noinc_ regmap functions for FIFO\n\nThe SC16IS7XX IC supports a burst mode to access the FIFOs where the\ninitial register address is sent ($00), followed by all the FIFO data\nwithout having to resend the register address each time. In this mode, the\nIC doesn\u0027t increment the register address for each R/W byte.\n\nThe regmap_raw_read() and regmap_raw_write() are functions which can\nperform IO over multiple registers. They are currently used to read/write\nfrom/to the FIFO, and although they operate correctly in this burst mode on\nthe SPI bus, they would corrupt the regmap cache if it was not disabled\nmanually. The reason is that when the R/W size is more than 1 byte, these\nfunctions assume that the register address is incremented and handle the\ncache accordingly.\n\nConvert FIFO R/W functions to use the regmap _noinc_ versions in order to\nremove the manual cache control which was a workaround when using the\n_raw_ versions. FIFO registers are properly declared as volatile so\ncache will not be used/updated for FIFO accesses.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52488", "url": "https://www.suse.com/security/cve/CVE-2023-52488" }, { "category": "external", "summary": "SUSE Bug 1221162 for CVE-2023-52488", "url": "https://bugzilla.suse.com/1221162" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52488" }, { "cve": "CVE-2023-52492", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52492" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ndmaengine: fix NULL pointer in channel unregistration function\n\n__dma_async_device_channel_register() can fail. In case of failure,\nchan-\u003elocal is freed (with free_percpu()), and chan-\u003elocal is nullified.\nWhen dma_async_device_unregister() is called (because of managed API or\nintentionally by DMA controller driver), channels are unconditionally\nunregistered, leading to this NULL pointer:\n[ 1.318693] Unable to handle kernel NULL pointer dereference at virtual address 00000000000000d0\n[...]\n[ 1.484499] Call trace:\n[ 1.486930] device_del+0x40/0x394\n[ 1.490314] device_unregister+0x20/0x7c\n[ 1.494220] __dma_async_device_channel_unregister+0x68/0xc0\n\nLook at dma_async_device_register() function error path, channel device\nunregistration is done only if chan-\u003elocal is not NULL.\n\nThen add the same condition at the beginning of\n__dma_async_device_channel_unregister() function, to avoid NULL pointer\nissue whatever the API used to reach this function.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52492", "url": "https://www.suse.com/security/cve/CVE-2023-52492" }, { "category": "external", "summary": "SUSE Bug 1221276 for CVE-2023-52492", "url": "https://bugzilla.suse.com/1221276" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6.2, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52492" }, { "cve": "CVE-2023-52493", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52493" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nbus: mhi: host: Drop chan lock before queuing buffers\n\nEnsure read and write locks for the channel are not taken in succession by\ndropping the read lock from parse_xfer_event() such that a callback given\nto client can potentially queue buffers and acquire the write lock in that\nprocess. Any queueing of buffers should be done without channel read lock\nacquired as it can result in multiple locks and a soft lockup.\n\n[mani: added fixes tag and cc\u0027ed stable]", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52493", "url": "https://www.suse.com/security/cve/CVE-2023-52493" }, { "category": "external", "summary": "SUSE Bug 1221274 for CVE-2023-52493", "url": "https://bugzilla.suse.com/1221274" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.1, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52493" }, { "cve": "CVE-2023-52494", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52494" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nbus: mhi: host: Add alignment check for event ring read pointer\n\nThough we do check the event ring read pointer by \"is_valid_ring_ptr\"\nto make sure it is in the buffer range, but there is another risk the\npointer may be not aligned. Since we are expecting event ring elements\nare 128 bits(struct mhi_ring_element) aligned, an unaligned read pointer\ncould lead to multiple issues like DoS or ring buffer memory corruption.\n\nSo add a alignment check for event ring read pointer.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52494", "url": "https://www.suse.com/security/cve/CVE-2023-52494" }, { "category": "external", "summary": "SUSE Bug 1221273 for CVE-2023-52494", "url": "https://bugzilla.suse.com/1221273" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.1, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52494" }, { "cve": "CVE-2023-52497", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52497" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nerofs: fix lz4 inplace decompression\n\nCurrently EROFS can map another compressed buffer for inplace\ndecompression, that was used to handle the cases that some pages of\ncompressed data are actually not in-place I/O.\n\nHowever, like most simple LZ77 algorithms, LZ4 expects the compressed\ndata is arranged at the end of the decompressed buffer and it\nexplicitly uses memmove() to handle overlapping:\n __________________________________________________________\n |_ direction of decompression --\u003e ____ |_ compressed data _|\n\nAlthough EROFS arranges compressed data like this, it typically maps two\nindividual virtual buffers so the relative order is uncertain.\nPreviously, it was hardly observed since LZ4 only uses memmove() for\nshort overlapped literals and x86/arm64 memmove implementations seem to\ncompletely cover it up and they don\u0027t have this issue. Juhyung reported\nthat EROFS data corruption can be found on a new Intel x86 processor.\nAfter some analysis, it seems that recent x86 processors with the new\nFSRM feature expose this issue with \"rep movsb\".\n\nLet\u0027s strictly use the decompressed buffer for lz4 inplace\ndecompression for now. Later, as an useful improvement, we could try\nto tie up these two buffers together in the correct order.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52497", "url": "https://www.suse.com/security/cve/CVE-2023-52497" }, { "category": "external", "summary": "SUSE Bug 1220879 for CVE-2023-52497", "url": "https://bugzilla.suse.com/1220879" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.4, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52497" }, { "cve": "CVE-2023-52500", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52500" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: pm80xx: Avoid leaking tags when processing OPC_INB_SET_CONTROLLER_CONFIG command\n\nTags allocated for OPC_INB_SET_CONTROLLER_CONFIG command need to be freed\nwhen we receive the response.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52500", "url": "https://www.suse.com/security/cve/CVE-2023-52500" }, { "category": "external", "summary": "SUSE Bug 1220883 for CVE-2023-52500", "url": "https://bugzilla.suse.com/1220883" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 3.3, "baseSeverity": "LOW", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52500" }, { "cve": "CVE-2023-52501", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52501" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nring-buffer: Do not attempt to read past \"commit\"\n\nWhen iterating over the ring buffer while the ring buffer is active, the\nwriter can corrupt the reader. There\u0027s barriers to help detect this and\nhandle it, but that code missed the case where the last event was at the\nvery end of the page and has only 4 bytes left.\n\nThe checks to detect the corruption by the writer to reads needs to see the\nlength of the event. If the length in the first 4 bytes is zero then the\nlength is stored in the second 4 bytes. But if the writer is in the process\nof updating that code, there\u0027s a small window where the length in the first\n4 bytes could be zero even though the length is only 4 bytes. That will\ncause rb_event_length() to read the next 4 bytes which could happen to be off the\nallocated page.\n\nTo protect against this, fail immediately if the next event pointer is\nless than 8 bytes from the end of the commit (last byte of data), as all\nevents must be a minimum of 8 bytes anyway.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52501", "url": "https://www.suse.com/security/cve/CVE-2023-52501" }, { "category": "external", "summary": "SUSE Bug 1220885 for CVE-2023-52501", "url": "https://bugzilla.suse.com/1220885" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52501" }, { "cve": "CVE-2023-52502", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52502" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn()\n\nSili Luo reported a race in nfc_llcp_sock_get(), leading to UAF.\n\nGetting a reference on the socket found in a lookup while\nholding a lock should happen before releasing the lock.\n\nnfc_llcp_sock_get_sn() has a similar problem.\n\nFinally nfc_llcp_recv_snl() needs to make sure the socket\nfound by nfc_llcp_sock_from_sn() does not disappear.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52502", "url": "https://www.suse.com/security/cve/CVE-2023-52502" }, { "category": "external", "summary": "SUSE Bug 1220831 for CVE-2023-52502", "url": "https://bugzilla.suse.com/1220831" }, { "category": "external", "summary": "SUSE Bug 1220832 for CVE-2023-52502", "url": "https://bugzilla.suse.com/1220832" }, { "category": "external", "summary": "SUSE Bug 1224298 for CVE-2023-52502", "url": "https://bugzilla.suse.com/1224298" }, { "category": "external", "summary": "SUSE Bug 1224878 for CVE-2023-52502", "url": "https://bugzilla.suse.com/1224878" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 7, "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "important" } ], "title": "CVE-2023-52502" }, { "cve": "CVE-2023-52503", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52503" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ntee: amdtee: fix use-after-free vulnerability in amdtee_close_session\n\nThere is a potential race condition in amdtee_close_session that may\ncause use-after-free in amdtee_open_session. For instance, if a session\nhas refcount == 1, and one thread tries to free this session via:\n\n kref_put(\u0026sess-\u003erefcount, destroy_session);\n\nthe reference count will get decremented, and the next step would be to\ncall destroy_session(). However, if in another thread,\namdtee_open_session() is called before destroy_session() has completed\nexecution, alloc_session() may return \u0027sess\u0027 that will be freed up\nlater in destroy_session() leading to use-after-free in\namdtee_open_session.\n\nTo fix this issue, treat decrement of sess-\u003erefcount and removal of\n\u0027sess\u0027 from session list in destroy_session() as a critical section, so\nthat it is executed atomically.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52503", "url": "https://www.suse.com/security/cve/CVE-2023-52503" }, { "category": "external", "summary": "SUSE Bug 1220915 for CVE-2023-52503", "url": "https://bugzilla.suse.com/1220915" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52503" }, { "cve": "CVE-2023-52504", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52504" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nx86/alternatives: Disable KASAN in apply_alternatives()\n\nFei has reported that KASAN triggers during apply_alternatives() on\na 5-level paging machine:\n\n\tBUG: KASAN: out-of-bounds in rcu_is_watching()\n\tRead of size 4 at addr ff110003ee6419a0 by task swapper/0/0\n\t...\n\t__asan_load4()\n\trcu_is_watching()\n\ttrace_hardirqs_on()\n\ttext_poke_early()\n\tapply_alternatives()\n\t...\n\nOn machines with 5-level paging, cpu_feature_enabled(X86_FEATURE_LA57)\ngets patched. It includes KASAN code, where KASAN_SHADOW_START depends on\n__VIRTUAL_MASK_SHIFT, which is defined with cpu_feature_enabled().\n\nKASAN gets confused when apply_alternatives() patches the\nKASAN_SHADOW_START users. A test patch that makes KASAN_SHADOW_START\nstatic, by replacing __VIRTUAL_MASK_SHIFT with 56, works around the issue.\n\nFix it for real by disabling KASAN while the kernel is patching alternatives.\n\n[ mingo: updated the changelog ]", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52504", "url": "https://www.suse.com/security/cve/CVE-2023-52504" }, { "category": "external", "summary": "SUSE Bug 1221553 for CVE-2023-52504", "url": "https://bugzilla.suse.com/1221553" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52504" }, { "cve": "CVE-2023-52507", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52507" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnfc: nci: assert requested protocol is valid\n\nThe protocol is used in a bit mask to determine if the protocol is\nsupported. Assert the provided protocol is less than the maximum\ndefined so it doesn\u0027t potentially perform a shift-out-of-bounds and\nprovide a clearer error for undefined protocols vs unsupported ones.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52507", "url": "https://www.suse.com/security/cve/CVE-2023-52507" }, { "category": "external", "summary": "SUSE Bug 1220833 for CVE-2023-52507", "url": "https://bugzilla.suse.com/1220833" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.7, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52507" }, { "cve": "CVE-2023-52508", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52508" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnvme-fc: Prevent null pointer dereference in nvme_fc_io_getuuid()\n\nThe nvme_fc_fcp_op structure describing an AEN operation is initialized with a\nnull request structure pointer. An FC LLDD may make a call to\nnvme_fc_io_getuuid passing a pointer to an nvmefc_fcp_req for an AEN operation.\n\nAdd validation of the request structure pointer before dereference.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52508", "url": "https://www.suse.com/security/cve/CVE-2023-52508" }, { "category": "external", "summary": "SUSE Bug 1221015 for CVE-2023-52508", "url": "https://bugzilla.suse.com/1221015" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52508" }, { "cve": "CVE-2023-52509", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52509" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nravb: Fix use-after-free issue in ravb_tx_timeout_work()\n\nThe ravb_stop() should call cancel_work_sync(). Otherwise,\nravb_tx_timeout_work() is possible to use the freed priv after\nravb_remove() was called like below:\n\nCPU0\t\t\tCPU1\n\t\t\travb_tx_timeout()\nravb_remove()\nunregister_netdev()\nfree_netdev(ndev)\n// free priv\n\t\t\travb_tx_timeout_work()\n\t\t\t// use priv\n\nunregister_netdev() will call .ndo_stop() so that ravb_stop() is\ncalled. And, after phy_stop() is called, netif_carrier_off()\nis also called. So that .ndo_tx_timeout() will not be called\nafter phy_stop().", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52509", "url": "https://www.suse.com/security/cve/CVE-2023-52509" }, { "category": "external", "summary": "SUSE Bug 1220836 for CVE-2023-52509", "url": "https://bugzilla.suse.com/1220836" }, { "category": "external", "summary": "SUSE Bug 1223290 for CVE-2023-52509", "url": "https://bugzilla.suse.com/1223290" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 7, "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "important" } ], "title": "CVE-2023-52509" }, { "cve": "CVE-2023-52510", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52510" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nieee802154: ca8210: Fix a potential UAF in ca8210_probe\n\nIf of_clk_add_provider() fails in ca8210_register_ext_clock(),\nit calls clk_unregister() to release priv-\u003eclk and returns an\nerror. However, the caller ca8210_probe() then calls ca8210_remove(),\nwhere priv-\u003eclk is freed again in ca8210_unregister_ext_clock(). In\nthis case, a use-after-free may happen in the second time we call\nclk_unregister().\n\nFix this by removing the first clk_unregister(). Also, priv-\u003eclk could\nbe an error code on failure of clk_register_fixed_rate(). Use\nIS_ERR_OR_NULL to catch this case in ca8210_unregister_ext_clock().", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52510", "url": "https://www.suse.com/security/cve/CVE-2023-52510" }, { "category": "external", "summary": "SUSE Bug 1220898 for CVE-2023-52510", "url": "https://bugzilla.suse.com/1220898" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6.7, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52510" }, { "cve": "CVE-2023-52511", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52511" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nspi: sun6i: reduce DMA RX transfer width to single byte\n\nThrough empirical testing it has been determined that sometimes RX SPI\ntransfers with DMA enabled return corrupted data. This is down to single\nor even multiple bytes lost during DMA transfer from SPI peripheral to\nmemory. It seems the RX FIFO within the SPI peripheral can become\nconfused when performing bus read accesses wider than a single byte to it\nduring an active SPI transfer.\n\nThis patch reduces the width of individual DMA read accesses to the\nRX FIFO to a single byte to mitigate that issue.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52511", "url": "https://www.suse.com/security/cve/CVE-2023-52511" }, { "category": "external", "summary": "SUSE Bug 1221012 for CVE-2023-52511", "url": "https://bugzilla.suse.com/1221012" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52511" }, { "cve": "CVE-2023-52513", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52513" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/siw: Fix connection failure handling\n\nIn case immediate MPA request processing fails, the newly\ncreated endpoint unlinks the listening endpoint and is\nready to be dropped. This special case was not handled\ncorrectly by the code handling the later TCP socket close,\ncausing a NULL dereference crash in siw_cm_work_handler()\nwhen dereferencing a NULL listener. We now also cancel\nthe useless MPA timeout, if immediate MPA request\nprocessing fails.\n\nThis patch furthermore simplifies MPA processing in general:\nScheduling a useless TCP socket read in sk_data_ready() upcall\nis now surpressed, if the socket is already moved out of\nTCP_ESTABLISHED state.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52513", "url": "https://www.suse.com/security/cve/CVE-2023-52513" }, { "category": "external", "summary": "SUSE Bug 1221022 for CVE-2023-52513", "url": "https://bugzilla.suse.com/1221022" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52513" }, { "cve": "CVE-2023-52515", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52515" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/srp: Do not call scsi_done() from srp_abort()\n\nAfter scmd_eh_abort_handler() has called the SCSI LLD eh_abort_handler\ncallback, it performs one of the following actions:\n* Call scsi_queue_insert().\n* Call scsi_finish_command().\n* Call scsi_eh_scmd_add().\nHence, SCSI abort handlers must not call scsi_done(). Otherwise all\nthe above actions would trigger a use-after-free. Hence remove the\nscsi_done() call from srp_abort(). Keep the srp_free_req() call\nbefore returning SUCCESS because we may not see the command again if\nSUCCESS is returned.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52515", "url": "https://www.suse.com/security/cve/CVE-2023-52515" }, { "category": "external", "summary": "SUSE Bug 1221048 for CVE-2023-52515", "url": "https://bugzilla.suse.com/1221048" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52515" }, { "cve": "CVE-2023-52517", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52517" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nspi: sun6i: fix race between DMA RX transfer completion and RX FIFO drain\n\nPreviously the transfer complete IRQ immediately drained to RX FIFO to\nread any data remaining in FIFO to the RX buffer. This behaviour is\ncorrect when dealing with SPI in interrupt mode. However in DMA mode the\ntransfer complete interrupt still fires as soon as all bytes to be\ntransferred have been stored in the FIFO. At that point data in the FIFO\nstill needs to be picked up by the DMA engine. Thus the drain procedure\nand DMA engine end up racing to read from RX FIFO, corrupting any data\nread. Additionally the RX buffer pointer is never adjusted according to\nDMA progress in DMA mode, thus calling the RX FIFO drain procedure in DMA\nmode is a bug.\nFix corruptions in DMA RX mode by draining RX FIFO only in interrupt mode.\nAlso wait for completion of RX DMA when in DMA mode before returning to\nensure all data has been copied to the supplied memory buffer.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52517", "url": "https://www.suse.com/security/cve/CVE-2023-52517" }, { "category": "external", "summary": "SUSE Bug 1221055 for CVE-2023-52517", "url": "https://bugzilla.suse.com/1221055" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52517" }, { "cve": "CVE-2023-52518", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52518" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: hci_codec: Fix leaking content of local_codecs\n\nThe following memory leak can be observed when the controller supports\ncodecs which are stored in local_codecs list but the elements are never\nfreed:\n\nunreferenced object 0xffff88800221d840 (size 32):\n comm \"kworker/u3:0\", pid 36, jiffies 4294898739 (age 127.060s)\n hex dump (first 32 bytes):\n f8 d3 02 03 80 88 ff ff 80 d8 21 02 80 88 ff ff ..........!.....\n 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................\n backtrace:\n [\u003cffffffffb324f557\u003e] __kmalloc+0x47/0x120\n [\u003cffffffffb39ef37d\u003e] hci_codec_list_add.isra.0+0x2d/0x160\n [\u003cffffffffb39ef643\u003e] hci_read_codec_capabilities+0x183/0x270\n [\u003cffffffffb39ef9ab\u003e] hci_read_supported_codecs+0x1bb/0x2d0\n [\u003cffffffffb39f162e\u003e] hci_read_local_codecs_sync+0x3e/0x60\n [\u003cffffffffb39ff1b3\u003e] hci_dev_open_sync+0x943/0x11e0\n [\u003cffffffffb396d55d\u003e] hci_power_on+0x10d/0x3f0\n [\u003cffffffffb30c99b4\u003e] process_one_work+0x404/0x800\n [\u003cffffffffb30ca134\u003e] worker_thread+0x374/0x670\n [\u003cffffffffb30d9108\u003e] kthread+0x188/0x1c0\n [\u003cffffffffb304db6b\u003e] ret_from_fork+0x2b/0x50\n [\u003cffffffffb300206a\u003e] ret_from_fork_asm+0x1a/0x30", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52518", "url": "https://www.suse.com/security/cve/CVE-2023-52518" }, { "category": "external", "summary": "SUSE Bug 1221056 for CVE-2023-52518", "url": "https://bugzilla.suse.com/1221056" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52518" }, { "cve": "CVE-2023-52519", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52519" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nHID: intel-ish-hid: ipc: Disable and reenable ACPI GPE bit\n\nThe EHL (Elkhart Lake) based platforms provide a OOB (Out of band)\nservice, which allows to wakup device when the system is in S5 (Soft-Off\nstate). This OOB service can be enabled/disabled from BIOS settings. When\nenabled, the ISH device gets PME wake capability. To enable PME wakeup,\ndriver also needs to enable ACPI GPE bit.\n\nOn resume, BIOS will clear the wakeup bit. So driver need to re-enable it\nin resume function to keep the next wakeup capability. But this BIOS\nclearing of wakeup bit doesn\u0027t decrement internal OS GPE reference count,\nso this reenabling on every resume will cause reference count to overflow.\n\nSo first disable and reenable ACPI GPE bit using acpi_disable_gpe().", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52519", "url": "https://www.suse.com/security/cve/CVE-2023-52519" }, { "category": "external", "summary": "SUSE Bug 1220920 for CVE-2023-52519", "url": "https://bugzilla.suse.com/1220920" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52519" }, { "cve": "CVE-2023-52520", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52520" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nplatform/x86: think-lmi: Fix reference leak\n\nIf a duplicate attribute is found using kset_find_obj(), a reference\nto that attribute is returned which needs to be disposed accordingly\nusing kobject_put(). Move the setting name validation into a separate\nfunction to allow for this change without having to duplicate the\ncleanup code for this setting.\nAs a side note, a very similar bug was fixed in\ncommit 7295a996fdab (\"platform/x86: dell-sysman: Fix reference leak\"),\nso it seems that the bug was copied from that driver.\n\nCompile-tested only.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52520", "url": "https://www.suse.com/security/cve/CVE-2023-52520" }, { "category": "external", "summary": "SUSE Bug 1220921 for CVE-2023-52520", "url": "https://bugzilla.suse.com/1220921" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52520" }, { "cve": "CVE-2023-52523", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52523" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nbpf, sockmap: Reject sk_msg egress redirects to non-TCP sockets\n\nWith a SOCKMAP/SOCKHASH map and an sk_msg program user can steer messages\nsent from one TCP socket (s1) to actually egress from another TCP\nsocket (s2):\n\ntcp_bpf_sendmsg(s1)\t\t// = sk_prot-\u003esendmsg\n tcp_bpf_send_verdict(s1)\t// __SK_REDIRECT case\n tcp_bpf_sendmsg_redir(s2)\n tcp_bpf_push_locked(s2)\n\ttcp_bpf_push(s2)\n\t tcp_rate_check_app_limited(s2) // expects tcp_sock\n\t tcp_sendmsg_locked(s2)\t // ditto\n\nThere is a hard-coded assumption in the call-chain, that the egress\nsocket (s2) is a TCP socket.\n\nHowever in commit 122e6c79efe1 (\"sock_map: Update sock type checks for\nUDP\") we have enabled redirects to non-TCP sockets. This was done for the\nsake of BPF sk_skb programs. There was no indention to support sk_msg\nsend-to-egress use case.\n\nAs a result, attempts to send-to-egress through a non-TCP socket lead to a\ncrash due to invalid downcast from sock to tcp_sock:\n\n BUG: kernel NULL pointer dereference, address: 000000000000002f\n ...\n Call Trace:\n \u003cTASK\u003e\n ? show_regs+0x60/0x70\n ? __die+0x1f/0x70\n ? page_fault_oops+0x80/0x160\n ? do_user_addr_fault+0x2d7/0x800\n ? rcu_is_watching+0x11/0x50\n ? exc_page_fault+0x70/0x1c0\n ? asm_exc_page_fault+0x27/0x30\n ? tcp_tso_segs+0x14/0xa0\n tcp_write_xmit+0x67/0xce0\n __tcp_push_pending_frames+0x32/0xf0\n tcp_push+0x107/0x140\n tcp_sendmsg_locked+0x99f/0xbb0\n tcp_bpf_push+0x19d/0x3a0\n tcp_bpf_sendmsg_redir+0x55/0xd0\n tcp_bpf_send_verdict+0x407/0x550\n tcp_bpf_sendmsg+0x1a1/0x390\n inet_sendmsg+0x6a/0x70\n sock_sendmsg+0x9d/0xc0\n ? sockfd_lookup_light+0x12/0x80\n __sys_sendto+0x10e/0x160\n ? syscall_enter_from_user_mode+0x20/0x60\n ? __this_cpu_preempt_check+0x13/0x20\n ? lockdep_hardirqs_on+0x82/0x110\n __x64_sys_sendto+0x1f/0x30\n do_syscall_64+0x38/0x90\n entry_SYSCALL_64_after_hwframe+0x63/0xcd\n\nReject selecting a non-TCP sockets as redirect target from a BPF sk_msg\nprogram to prevent the crash. When attempted, user will receive an EACCES\nerror from send/sendto/sendmsg() syscall.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52523", "url": "https://www.suse.com/security/cve/CVE-2023-52523" }, { "category": "external", "summary": "SUSE Bug 1220926 for CVE-2023-52523", "url": "https://bugzilla.suse.com/1220926" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52523" }, { "cve": "CVE-2023-52524", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52524" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: nfc: llcp: Add lock when modifying device list\n\nThe device list needs its associated lock held when modifying it, or the\nlist could become corrupted, as syzbot discovered.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52524", "url": "https://www.suse.com/security/cve/CVE-2023-52524" }, { "category": "external", "summary": "SUSE Bug 1220927 for CVE-2023-52524", "url": "https://bugzilla.suse.com/1220927" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52524" }, { "cve": "CVE-2023-52525", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52525" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: mwifiex: Fix oob check condition in mwifiex_process_rx_packet\n\nOnly skip the code path trying to access the rfc1042 headers when the\nbuffer is too small, so the driver can still process packets without\nrfc1042 headers.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52525", "url": "https://www.suse.com/security/cve/CVE-2023-52525" }, { "category": "external", "summary": "SUSE Bug 1220840 for CVE-2023-52525", "url": "https://bugzilla.suse.com/1220840" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 3.5, "baseSeverity": "LOW", "vectorString": "CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52525" }, { "cve": "CVE-2023-52528", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52528" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: usb: smsc75xx: Fix uninit-value access in __smsc75xx_read_reg\n\nsyzbot reported the following uninit-value access issue:\n\n=====================================================\nBUG: KMSAN: uninit-value in smsc75xx_wait_ready drivers/net/usb/smsc75xx.c:975 [inline]\nBUG: KMSAN: uninit-value in smsc75xx_bind+0x5c9/0x11e0 drivers/net/usb/smsc75xx.c:1482\nCPU: 0 PID: 8696 Comm: kworker/0:3 Not tainted 5.8.0-rc5-syzkaller #0\nHardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 01/01/2011\nWorkqueue: usb_hub_wq hub_event\nCall Trace:\n __dump_stack lib/dump_stack.c:77 [inline]\n dump_stack+0x21c/0x280 lib/dump_stack.c:118\n kmsan_report+0xf7/0x1e0 mm/kmsan/kmsan_report.c:121\n __msan_warning+0x58/0xa0 mm/kmsan/kmsan_instr.c:215\n smsc75xx_wait_ready drivers/net/usb/smsc75xx.c:975 [inline]\n smsc75xx_bind+0x5c9/0x11e0 drivers/net/usb/smsc75xx.c:1482\n usbnet_probe+0x1152/0x3f90 drivers/net/usb/usbnet.c:1737\n usb_probe_interface+0xece/0x1550 drivers/usb/core/driver.c:374\n really_probe+0xf20/0x20b0 drivers/base/dd.c:529\n driver_probe_device+0x293/0x390 drivers/base/dd.c:701\n __device_attach_driver+0x63f/0x830 drivers/base/dd.c:807\n bus_for_each_drv+0x2ca/0x3f0 drivers/base/bus.c:431\n __device_attach+0x4e2/0x7f0 drivers/base/dd.c:873\n device_initial_probe+0x4a/0x60 drivers/base/dd.c:920\n bus_probe_device+0x177/0x3d0 drivers/base/bus.c:491\n device_add+0x3b0e/0x40d0 drivers/base/core.c:2680\n usb_set_configuration+0x380f/0x3f10 drivers/usb/core/message.c:2032\n usb_generic_driver_probe+0x138/0x300 drivers/usb/core/generic.c:241\n usb_probe_device+0x311/0x490 drivers/usb/core/driver.c:272\n really_probe+0xf20/0x20b0 drivers/base/dd.c:529\n driver_probe_device+0x293/0x390 drivers/base/dd.c:701\n __device_attach_driver+0x63f/0x830 drivers/base/dd.c:807\n bus_for_each_drv+0x2ca/0x3f0 drivers/base/bus.c:431\n __device_attach+0x4e2/0x7f0 drivers/base/dd.c:873\n device_initial_probe+0x4a/0x60 drivers/base/dd.c:920\n bus_probe_device+0x177/0x3d0 drivers/base/bus.c:491\n device_add+0x3b0e/0x40d0 drivers/base/core.c:2680\n usb_new_device+0x1bd4/0x2a30 drivers/usb/core/hub.c:2554\n hub_port_connect drivers/usb/core/hub.c:5208 [inline]\n hub_port_connect_change drivers/usb/core/hub.c:5348 [inline]\n port_event drivers/usb/core/hub.c:5494 [inline]\n hub_event+0x5e7b/0x8a70 drivers/usb/core/hub.c:5576\n process_one_work+0x1688/0x2140 kernel/workqueue.c:2269\n worker_thread+0x10bc/0x2730 kernel/workqueue.c:2415\n kthread+0x551/0x590 kernel/kthread.c:292\n ret_from_fork+0x1f/0x30 arch/x86/entry/entry_64.S:293\n\nLocal variable ----buf.i87@smsc75xx_bind created at:\n __smsc75xx_read_reg drivers/net/usb/smsc75xx.c:83 [inline]\n smsc75xx_wait_ready drivers/net/usb/smsc75xx.c:968 [inline]\n smsc75xx_bind+0x485/0x11e0 drivers/net/usb/smsc75xx.c:1482\n __smsc75xx_read_reg drivers/net/usb/smsc75xx.c:83 [inline]\n smsc75xx_wait_ready drivers/net/usb/smsc75xx.c:968 [inline]\n smsc75xx_bind+0x485/0x11e0 drivers/net/usb/smsc75xx.c:1482\n\nThis issue is caused because usbnet_read_cmd() reads less bytes than requested\n(zero byte in the reproducer). In this case, \u0027buf\u0027 is not properly filled.\n\nThis patch fixes the issue by returning -ENODATA if usbnet_read_cmd() reads\nless bytes than requested.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52528", "url": "https://www.suse.com/security/cve/CVE-2023-52528" }, { "category": "external", "summary": "SUSE Bug 1220843 for CVE-2023-52528", "url": "https://bugzilla.suse.com/1220843" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 3.5, "baseSeverity": "LOW", "vectorString": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52528" }, { "cve": "CVE-2023-52529", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52529" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nHID: sony: Fix a potential memory leak in sony_probe()\n\nIf an error occurs after a successful usb_alloc_urb() call, usb_free_urb()\nshould be called.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52529", "url": "https://www.suse.com/security/cve/CVE-2023-52529" }, { "category": "external", "summary": "SUSE Bug 1220929 for CVE-2023-52529", "url": "https://bugzilla.suse.com/1220929" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52529" }, { "cve": "CVE-2023-52532", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52532" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: mana: Fix TX CQE error handling\n\nFor an unknown TX CQE error type (probably from a newer hardware),\nstill free the SKB, update the queue tail, etc., otherwise the\naccounting will be wrong.\n\nAlso, TX errors can be triggered by injecting corrupted packets, so\nreplace the WARN_ONCE to ratelimited error logging.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52532", "url": "https://www.suse.com/security/cve/CVE-2023-52532" }, { "category": "external", "summary": "SUSE Bug 1220932 for CVE-2023-52532", "url": "https://bugzilla.suse.com/1220932" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52532" }, { "cve": "CVE-2023-52561", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52561" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\narm64: dts: qcom: sdm845-db845c: Mark cont splash memory region as reserved\n\nAdding a reserved memory region for the framebuffer memory\n(the splash memory region set up by the bootloader).\n\nIt fixes a kernel panic (arm-smmu: Unhandled context fault\nat this particular memory region) reported on DB845c running\nv5.10.y.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52561", "url": "https://www.suse.com/security/cve/CVE-2023-52561" }, { "category": "external", "summary": "SUSE Bug 1220935 for CVE-2023-52561", "url": "https://bugzilla.suse.com/1220935" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52561" }, { "cve": "CVE-2023-52563", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52563" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/meson: fix memory leak on -\u003ehpd_notify callback\n\nThe EDID returned by drm_bridge_get_edid() needs to be freed.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52563", "url": "https://www.suse.com/security/cve/CVE-2023-52563" }, { "category": "external", "summary": "SUSE Bug 1220937 for CVE-2023-52563", "url": "https://bugzilla.suse.com/1220937" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52563" }, { "cve": "CVE-2023-52564", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52564" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nRevert \"tty: n_gsm: fix UAF in gsm_cleanup_mux\"\n\nThis reverts commit 9b9c8195f3f0d74a826077fc1c01b9ee74907239.\n\nThe commit above is reverted as it did not solve the original issue.\n\ngsm_cleanup_mux() tries to free up the virtual ttys by calling\ngsm_dlci_release() for each available DLCI. There, dlci_put() is called to\ndecrease the reference counter for the DLCI via tty_port_put() which\nfinally calls gsm_dlci_free(). This already clears the pointer which is\nbeing checked in gsm_cleanup_mux() before calling gsm_dlci_release().\nTherefore, it is not necessary to clear this pointer in gsm_cleanup_mux()\nas done in the reverted commit. The commit introduces a null pointer\ndereference:\n \u003cTASK\u003e\n ? __die+0x1f/0x70\n ? page_fault_oops+0x156/0x420\n ? search_exception_tables+0x37/0x50\n ? fixup_exception+0x21/0x310\n ? exc_page_fault+0x69/0x150\n ? asm_exc_page_fault+0x26/0x30\n ? tty_port_put+0x19/0xa0\n gsmtty_cleanup+0x29/0x80 [n_gsm]\n release_one_tty+0x37/0xe0\n process_one_work+0x1e6/0x3e0\n worker_thread+0x4c/0x3d0\n ? __pfx_worker_thread+0x10/0x10\n kthread+0xe1/0x110\n ? __pfx_kthread+0x10/0x10\n ret_from_fork+0x2f/0x50\n ? __pfx_kthread+0x10/0x10\n ret_from_fork_asm+0x1b/0x30\n \u003c/TASK\u003e\n\nThe actual issue is that nothing guards dlci_put() from being called\nmultiple times while the tty driver was triggered but did not yet finished\ncalling gsm_dlci_free().", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52564", "url": "https://www.suse.com/security/cve/CVE-2023-52564" }, { "category": "external", "summary": "SUSE Bug 1220938 for CVE-2023-52564", "url": "https://bugzilla.suse.com/1220938" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52564" }, { "cve": "CVE-2023-52566", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52566" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnilfs2: fix potential use after free in nilfs_gccache_submit_read_data()\n\nIn nilfs_gccache_submit_read_data(), brelse(bh) is called to drop the\nreference count of bh when the call to nilfs_dat_translate() fails. If\nthe reference count hits 0 and its owner page gets unlocked, bh may be\nfreed. However, bh-\u003eb_page is dereferenced to put the page after that,\nwhich may result in a use-after-free bug. This patch moves the release\noperation after unlocking and putting the page.\n\nNOTE: The function in question is only called in GC, and in combination\nwith current userland tools, address translation using DAT does not occur\nin that function, so the code path that causes this issue will not be\nexecuted. However, it is possible to run that code path by intentionally\nmodifying the userland GC library or by calling the GC ioctl directly.\n\n[konishi.ryusuke@gmail.com: NOTE added to the commit log]", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52566", "url": "https://www.suse.com/security/cve/CVE-2023-52566" }, { "category": "external", "summary": "SUSE Bug 1220940 for CVE-2023-52566", "url": "https://bugzilla.suse.com/1220940" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52566" }, { "cve": "CVE-2023-52567", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52567" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nserial: 8250_port: Check IRQ data before use\n\nIn case the leaf driver wants to use IRQ polling (irq = 0) and\nIIR register shows that an interrupt happened in the 8250 hardware\nthe IRQ data can be NULL. In such a case we need to skip the wake\nevent as we came to this path from the timer interrupt and quite\nlikely system is already awake.\n\nWithout this fix we have got an Oops:\n\n serial8250: ttyS0 at I/O 0x3f8 (irq = 0, base_baud = 115200) is a 16550A\n ...\n BUG: kernel NULL pointer dereference, address: 0000000000000010\n RIP: 0010:serial8250_handle_irq+0x7c/0x240\n Call Trace:\n ? serial8250_handle_irq+0x7c/0x240\n ? __pfx_serial8250_timeout+0x10/0x10", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52567", "url": "https://www.suse.com/security/cve/CVE-2023-52567" }, { "category": "external", "summary": "SUSE Bug 1220839 for CVE-2023-52567", "url": "https://bugzilla.suse.com/1220839" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 2.3, "baseSeverity": "LOW", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "low" } ], "title": "CVE-2023-52567" }, { "cve": "CVE-2023-52569", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52569" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nbtrfs: remove BUG() after failure to insert delayed dir index item\n\nInstead of calling BUG() when we fail to insert a delayed dir index item\ninto the delayed node\u0027s tree, we can just release all the resources we\nhave allocated/acquired before and return the error to the caller. This is\nfine because all existing call chains undo anything they have done before\ncalling btrfs_insert_delayed_dir_index() or BUG_ON (when creating pending\nsnapshots in the transaction commit path).\n\nSo remove the BUG() call and do proper error handling.\n\nThis relates to a syzbot report linked below, but does not fix it because\nit only prevents hitting a BUG(), it does not fix the issue where somehow\nwe attempt to use twice the same index number for different index items.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52569", "url": "https://www.suse.com/security/cve/CVE-2023-52569" }, { "category": "external", "summary": "SUSE Bug 1220918 for CVE-2023-52569", "url": "https://bugzilla.suse.com/1220918" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52569" }, { "cve": "CVE-2023-52574", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52574" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nteam: fix null-ptr-deref when team device type is changed\n\nGet a null-ptr-deref bug as follows with reproducer [1].\n\nBUG: kernel NULL pointer dereference, address: 0000000000000228\n...\nRIP: 0010:vlan_dev_hard_header+0x35/0x140 [8021q]\n...\nCall Trace:\n \u003cTASK\u003e\n ? __die+0x24/0x70\n ? page_fault_oops+0x82/0x150\n ? exc_page_fault+0x69/0x150\n ? asm_exc_page_fault+0x26/0x30\n ? vlan_dev_hard_header+0x35/0x140 [8021q]\n ? vlan_dev_hard_header+0x8e/0x140 [8021q]\n neigh_connected_output+0xb2/0x100\n ip6_finish_output2+0x1cb/0x520\n ? nf_hook_slow+0x43/0xc0\n ? ip6_mtu+0x46/0x80\n ip6_finish_output+0x2a/0xb0\n mld_sendpack+0x18f/0x250\n mld_ifc_work+0x39/0x160\n process_one_work+0x1e6/0x3f0\n worker_thread+0x4d/0x2f0\n ? __pfx_worker_thread+0x10/0x10\n kthread+0xe5/0x120\n ? __pfx_kthread+0x10/0x10\n ret_from_fork+0x34/0x50\n ? __pfx_kthread+0x10/0x10\n ret_from_fork_asm+0x1b/0x30\n\n[1]\n$ teamd -t team0 -d -c \u0027{\"runner\": {\"name\": \"loadbalance\"}}\u0027\n$ ip link add name t-dummy type dummy\n$ ip link add link t-dummy name t-dummy.100 type vlan id 100\n$ ip link add name t-nlmon type nlmon\n$ ip link set t-nlmon master team0\n$ ip link set t-nlmon nomaster\n$ ip link set t-dummy up\n$ ip link set team0 up\n$ ip link set t-dummy.100 down\n$ ip link set t-dummy.100 master team0\n\nWhen enslave a vlan device to team device and team device type is changed\nfrom non-ether to ether, header_ops of team device is changed to\nvlan_header_ops. That is incorrect and will trigger null-ptr-deref\nfor vlan-\u003ereal_dev in vlan_dev_hard_header() because team device is not\na vlan device.\n\nCache eth_header_ops in team_setup(), then assign cached header_ops to\nheader_ops of team net device when its type is changed from non-ether\nto ether to fix the bug.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52574", "url": "https://www.suse.com/security/cve/CVE-2023-52574" }, { "category": "external", "summary": "SUSE Bug 1220870 for CVE-2023-52574", "url": "https://bugzilla.suse.com/1220870" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52574" }, { "cve": "CVE-2023-52575", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52575" } ], "notes": [ { "category": "general", "text": "This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52575", "url": "https://www.suse.com/security/cve/CVE-2023-52575" }, { "category": "external", "summary": "SUSE Bug 1220871 for CVE-2023-52575", "url": "https://bugzilla.suse.com/1220871" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52575" }, { "cve": "CVE-2023-52576", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52576" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nx86/mm, kexec, ima: Use memblock_free_late() from ima_free_kexec_buffer()\n\nThe code calling ima_free_kexec_buffer() runs long after the memblock\nallocator has already been torn down, potentially resulting in a use\nafter free in memblock_isolate_range().\n\nWith KASAN or KFENCE, this use after free will result in a BUG\nfrom the idle task, and a subsequent kernel panic.\n\nSwitch ima_free_kexec_buffer() over to memblock_free_late() to avoid\nthat bug.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52576", "url": "https://www.suse.com/security/cve/CVE-2023-52576" }, { "category": "external", "summary": "SUSE Bug 1220872 for CVE-2023-52576", "url": "https://bugzilla.suse.com/1220872" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52576" }, { "cve": "CVE-2023-52582", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52582" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnetfs: Only call folio_start_fscache() one time for each folio\n\nIf a network filesystem using netfs implements a clamp_length()\nfunction, it can set subrequest lengths smaller than a page size.\n\nWhen we loop through the folios in netfs_rreq_unlock_folios() to\nset any folios to be written back, we need to make sure we only\ncall folio_start_fscache() once for each folio.\n\nOtherwise, this simple testcase:\n\n mount -o fsc,rsize=1024,wsize=1024 127.0.0.1:/export /mnt/nfs\n dd if=/dev/zero of=/mnt/nfs/file.bin bs=4096 count=1\n 1+0 records in\n 1+0 records out\n 4096 bytes (4.1 kB, 4.0 KiB) copied, 0.0126359 s, 324 kB/s\n echo 3 \u003e /proc/sys/vm/drop_caches\n cat /mnt/nfs/file.bin \u003e /dev/null\n\nwill trigger an oops similar to the following:\n\n page dumped because: VM_BUG_ON_FOLIO(folio_test_private_2(folio))\n ------------[ cut here ]------------\n kernel BUG at include/linux/netfs.h:44!\n ...\n CPU: 5 PID: 134 Comm: kworker/u16:5 Kdump: loaded Not tainted 6.4.0-rc5\n ...\n RIP: 0010:netfs_rreq_unlock_folios+0x68e/0x730 [netfs]\n ...\n Call Trace:\n netfs_rreq_assess+0x497/0x660 [netfs]\n netfs_subreq_terminated+0x32b/0x610 [netfs]\n nfs_netfs_read_completion+0x14e/0x1a0 [nfs]\n nfs_read_completion+0x2f9/0x330 [nfs]\n rpc_free_task+0x72/0xa0 [sunrpc]\n rpc_async_release+0x46/0x70 [sunrpc]\n process_one_work+0x3bd/0x710\n worker_thread+0x89/0x610\n kthread+0x181/0x1c0\n ret_from_fork+0x29/0x50", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52582", "url": "https://www.suse.com/security/cve/CVE-2023-52582" }, { "category": "external", "summary": "SUSE Bug 1220878 for CVE-2023-52582", "url": "https://bugzilla.suse.com/1220878" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52582" }, { "cve": "CVE-2023-52583", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52583" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nceph: fix deadlock or deadcode of misusing dget()\n\nThe lock order is incorrect between denty and its parent, we should\nalways make sure that the parent get the lock first.\n\nBut since this deadcode is never used and the parent dir will always\nbe set from the callers, let\u0027s just remove it.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52583", "url": "https://www.suse.com/security/cve/CVE-2023-52583" }, { "category": "external", "summary": "SUSE Bug 1221058 for CVE-2023-52583", "url": "https://bugzilla.suse.com/1221058" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52583" }, { "cve": "CVE-2023-52587", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52587" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nIB/ipoib: Fix mcast list locking\n\nReleasing the `priv-\u003elock` while iterating the `priv-\u003emulticast_list` in\n`ipoib_mcast_join_task()` opens a window for `ipoib_mcast_dev_flush()` to\nremove the items while in the middle of iteration. If the mcast is removed\nwhile the lock was dropped, the for loop spins forever resulting in a hard\nlockup (as was reported on RHEL 4.18.0-372.75.1.el8_6 kernel):\n\n Task A (kworker/u72:2 below) | Task B (kworker/u72:0 below)\n -----------------------------------+-----------------------------------\n ipoib_mcast_join_task(work) | ipoib_ib_dev_flush_light(work)\n spin_lock_irq(\u0026priv-\u003elock) | __ipoib_ib_dev_flush(priv, ...)\n list_for_each_entry(mcast, | ipoib_mcast_dev_flush(dev = priv-\u003edev)\n \u0026priv-\u003emulticast_list, list) |\n ipoib_mcast_join(dev, mcast) |\n spin_unlock_irq(\u0026priv-\u003elock) |\n | spin_lock_irqsave(\u0026priv-\u003elock, flags)\n | list_for_each_entry_safe(mcast, tmcast,\n | \u0026priv-\u003emulticast_list, list)\n | list_del(\u0026mcast-\u003elist);\n | list_add_tail(\u0026mcast-\u003elist, \u0026remove_list)\n | spin_unlock_irqrestore(\u0026priv-\u003elock, flags)\n spin_lock_irq(\u0026priv-\u003elock) |\n | ipoib_mcast_remove_list(\u0026remove_list)\n (Here, `mcast` is no longer on the | list_for_each_entry_safe(mcast, tmcast,\n `priv-\u003emulticast_list` and we keep | remove_list, list)\n spinning on the `remove_list` of | \u003e\u003e\u003e wait_for_completion(\u0026mcast-\u003edone)\n the other thread which is blocked |\n and the list is still valid on |\n it\u0027s stack.)\n\nFix this by keeping the lock held and changing to GFP_ATOMIC to prevent\neventual sleeps.\nUnfortunately we could not reproduce the lockup and confirm this fix but\nbased on the code review I think this fix should address such lockups.\n\ncrash\u003e bc 31\nPID: 747 TASK: ff1c6a1a007e8000 CPU: 31 COMMAND: \"kworker/u72:2\"\n--\n [exception RIP: ipoib_mcast_join_task+0x1b1]\n RIP: ffffffffc0944ac1 RSP: ff646f199a8c7e00 RFLAGS: 00000002\n RAX: 0000000000000000 RBX: ff1c6a1a04dc82f8 RCX: 0000000000000000\n work (\u0026priv-\u003emcast_task{,.work})\n RDX: ff1c6a192d60ac68 RSI: 0000000000000286 RDI: ff1c6a1a04dc8000\n \u0026mcast-\u003elist\n RBP: ff646f199a8c7e90 R8: ff1c699980019420 R9: ff1c6a1920c9a000\n R10: ff646f199a8c7e00 R11: ff1c6a191a7d9800 R12: ff1c6a192d60ac00\n mcast\n R13: ff1c6a1d82200000 R14: ff1c6a1a04dc8000 R15: ff1c6a1a04dc82d8\n dev priv (\u0026priv-\u003elock) \u0026priv-\u003emulticast_list (aka head)\n ORIG_RAX: ffffffffffffffff CS: 0010 SS: 0018\n--- \u003cNMI exception stack\u003e ---\n #5 [ff646f199a8c7e00] ipoib_mcast_join_task+0x1b1 at ffffffffc0944ac1 [ib_ipoib]\n #6 [ff646f199a8c7e98] process_one_work+0x1a7 at ffffffff9bf10967\n\ncrash\u003e rx ff646f199a8c7e68\nff646f199a8c7e68: ff1c6a1a04dc82f8 \u003c\u003c\u003c work = \u0026priv-\u003emcast_task.work\n\ncrash\u003e list -hO ipoib_dev_priv.multicast_list ff1c6a1a04dc8000\n(empty)\n\ncrash\u003e ipoib_dev_priv.mcast_task.work.func,mcast_mutex.owner.counter ff1c6a1a04dc8000\n mcast_task.work.func = 0xffffffffc0944910 \u003cipoib_mcast_join_task\u003e,\n mcast_mutex.owner.counter = 0xff1c69998efec000\n\ncrash\u003e b 8\nPID: 8 TASK: ff1c69998efec000 CPU: 33 COMMAND: \"kworker/u72:0\"\n--\n #3 [ff646f1980153d50] wait_for_completion+0x96 at ffffffff9c7d7646\n #4 [ff646f1980153d90] ipoib_mcast_remove_list+0x56 at ffffffffc0944dc6 [ib_ipoib]\n #5 [ff646f1980153de8] ipoib_mcast_dev_flush+0x1a7 at ffffffffc09455a7 [ib_ipoib]\n #6 [ff646f1980153e58] __ipoib_ib_dev_flush+0x1a4 at ffffffffc09431a4 [ib_ipoib]\n #7 [ff\n---truncated---", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52587", "url": "https://www.suse.com/security/cve/CVE-2023-52587" }, { "category": "external", "summary": "SUSE Bug 1221082 for CVE-2023-52587", "url": "https://bugzilla.suse.com/1221082" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.7, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52587" }, { "cve": "CVE-2023-52591", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52591" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nreiserfs: Avoid touching renamed directory if parent does not change\n\nThe VFS will not be locking moved directory if its parent does not\nchange. Change reiserfs rename code to avoid touching renamed directory\nif its parent does not change as without locking that can corrupt the\nfilesystem.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52591", "url": "https://www.suse.com/security/cve/CVE-2023-52591" }, { "category": "external", "summary": "SUSE Bug 1221044 for CVE-2023-52591", "url": "https://bugzilla.suse.com/1221044" }, { "category": "external", "summary": "SUSE Bug 1221578 for CVE-2023-52591", "url": "https://bugzilla.suse.com/1221578" }, { "category": "external", "summary": "SUSE Bug 1221598 for CVE-2023-52591", "url": "https://bugzilla.suse.com/1221598" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 7.1, "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "important" } ], "title": "CVE-2023-52591" }, { "cve": "CVE-2023-52594", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52594" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus()\n\nFix an array-index-out-of-bounds read in ath9k_htc_txstatus(). The bug\noccurs when txs-\u003ecnt, data from a URB provided by a USB device, is\nbigger than the size of the array txs-\u003etxstatus, which is\nHTC_MAX_TX_STATUS. WARN_ON() already checks it, but there is no bug\nhandling code after the check. Make the function return if that is the\ncase.\n\nFound by a modified version of syzkaller.\n\nUBSAN: array-index-out-of-bounds in htc_drv_txrx.c\nindex 13 is out of range for type \u0027__wmi_event_txstatus [12]\u0027\nCall Trace:\n ath9k_htc_txstatus\n ath9k_wmi_event_tasklet\n tasklet_action_common\n __do_softirq\n irq_exit_rxu\n sysvec_apic_timer_interrupt", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52594", "url": "https://www.suse.com/security/cve/CVE-2023-52594" }, { "category": "external", "summary": "SUSE Bug 1221045 for CVE-2023-52594", "url": "https://bugzilla.suse.com/1221045" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.4, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52594" }, { "cve": "CVE-2023-52595", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52595" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: rt2x00: restart beacon queue when hardware reset\n\nWhen a hardware reset is triggered, all registers are reset, so all\nqueues are forced to stop in hardware interface. However, mac80211\nwill not automatically stop the queue. If we don\u0027t manually stop the\nbeacon queue, the queue will be deadlocked and unable to start again.\nThis patch fixes the issue where Apple devices cannot connect to the\nAP after calling ieee80211_restart_hw().", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52595", "url": "https://www.suse.com/security/cve/CVE-2023-52595" }, { "category": "external", "summary": "SUSE Bug 1221046 for CVE-2023-52595", "url": "https://bugzilla.suse.com/1221046" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.4, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52595" }, { "cve": "CVE-2023-52597", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52597" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: s390: fix setting of fpc register\n\nkvm_arch_vcpu_ioctl_set_fpu() allows to set the floating point control\n(fpc) register of a guest cpu. The new value is tested for validity by\ntemporarily loading it into the fpc register.\n\nThis may lead to corruption of the fpc register of the host process:\nif an interrupt happens while the value is temporarily loaded into the fpc\nregister, and within interrupt context floating point or vector registers\nare used, the current fp/vx registers are saved with save_fpu_regs()\nassuming they belong to user space and will be loaded into fp/vx registers\nwhen returning to user space.\n\ntest_fp_ctl() restores the original user space / host process fpc register\nvalue, however it will be discarded, when returning to user space.\n\nIn result the host process will incorrectly continue to run with the value\nthat was supposed to be used for a guest cpu.\n\nFix this by simply removing the test. There is another test right before\nthe SIE context is entered which will handles invalid values.\n\nThis results in a change of behaviour: invalid values will now be accepted\ninstead of that the ioctl fails with -EINVAL. This seems to be acceptable,\ngiven that this interface is most likely not used anymore, and this is in\naddition the same behaviour implemented with the memory mapped interface\n(replace invalid values with zero) - see sync_regs() in kvm-s390.c.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52597", "url": "https://www.suse.com/security/cve/CVE-2023-52597" }, { "category": "external", "summary": "SUSE Bug 1221040 for CVE-2023-52597", "url": "https://bugzilla.suse.com/1221040" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.7, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:L/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52597" }, { "cve": "CVE-2023-52598", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52598" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ns390/ptrace: handle setting of fpc register correctly\n\nIf the content of the floating point control (fpc) register of a traced\nprocess is modified with the ptrace interface the new value is tested for\nvalidity by temporarily loading it into the fpc register.\n\nThis may lead to corruption of the fpc register of the tracing process:\nif an interrupt happens while the value is temporarily loaded into the\nfpc register, and within interrupt context floating point or vector\nregisters are used, the current fp/vx registers are saved with\nsave_fpu_regs() assuming they belong to user space and will be loaded into\nfp/vx registers when returning to user space.\n\ntest_fp_ctl() restores the original user space fpc register value, however\nit will be discarded, when returning to user space.\n\nIn result the tracer will incorrectly continue to run with the value that\nwas supposed to be used for the traced process.\n\nFix this by saving fpu register contents with save_fpu_regs() before using\ntest_fp_ctl().", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52598", "url": "https://www.suse.com/security/cve/CVE-2023-52598" }, { "category": "external", "summary": "SUSE Bug 1221060 for CVE-2023-52598", "url": "https://bugzilla.suse.com/1221060" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52598" }, { "cve": "CVE-2023-52599", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52599" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\njfs: fix array-index-out-of-bounds in diNewExt\n\n[Syz report]\nUBSAN: array-index-out-of-bounds in fs/jfs/jfs_imap.c:2360:2\nindex -878706688 is out of range for type \u0027struct iagctl[128]\u0027\nCPU: 1 PID: 5065 Comm: syz-executor282 Not tainted 6.7.0-rc4-syzkaller-00009-gbee0e7762ad2 #0\nHardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 11/10/2023\nCall Trace:\n \u003cTASK\u003e\n __dump_stack lib/dump_stack.c:88 [inline]\n dump_stack_lvl+0x1e7/0x2d0 lib/dump_stack.c:106\n ubsan_epilogue lib/ubsan.c:217 [inline]\n __ubsan_handle_out_of_bounds+0x11c/0x150 lib/ubsan.c:348\n diNewExt+0x3cf3/0x4000 fs/jfs/jfs_imap.c:2360\n diAllocExt fs/jfs/jfs_imap.c:1949 [inline]\n diAllocAG+0xbe8/0x1e50 fs/jfs/jfs_imap.c:1666\n diAlloc+0x1d3/0x1760 fs/jfs/jfs_imap.c:1587\n ialloc+0x8f/0x900 fs/jfs/jfs_inode.c:56\n jfs_mkdir+0x1c5/0xb90 fs/jfs/namei.c:225\n vfs_mkdir+0x2f1/0x4b0 fs/namei.c:4106\n do_mkdirat+0x264/0x3a0 fs/namei.c:4129\n __do_sys_mkdir fs/namei.c:4149 [inline]\n __se_sys_mkdir fs/namei.c:4147 [inline]\n __x64_sys_mkdir+0x6e/0x80 fs/namei.c:4147\n do_syscall_x64 arch/x86/entry/common.c:51 [inline]\n do_syscall_64+0x45/0x110 arch/x86/entry/common.c:82\n entry_SYSCALL_64_after_hwframe+0x63/0x6b\nRIP: 0033:0x7fcb7e6a0b57\nCode: ff ff 77 07 31 c0 c3 0f 1f 40 00 48 c7 c2 b8 ff ff ff f7 d8 64 89 02 b8 ff ff ff ff c3 66 0f 1f 44 00 00 b8 53 00 00 00 0f 05 \u003c48\u003e 3d 01 f0 ff ff 73 01 c3 48 c7 c1 b8 ff ff ff f7 d8 64 89 01 48\nRSP: 002b:00007ffd83023038 EFLAGS: 00000286 ORIG_RAX: 0000000000000053\nRAX: ffffffffffffffda RBX: 00000000ffffffff RCX: 00007fcb7e6a0b57\nRDX: 00000000000a1020 RSI: 00000000000001ff RDI: 0000000020000140\nRBP: 0000000020000140 R08: 0000000000000000 R09: 0000000000000000\nR10: 0000000000000000 R11: 0000000000000286 R12: 00007ffd830230d0\nR13: 0000000000000000 R14: 0000000000000000 R15: 0000000000000000\n\n[Analysis]\nWhen the agstart is too large, it can cause agno overflow.\n\n[Fix]\nAfter obtaining agno, if the value is invalid, exit the subsequent process.\n\n\nModified the test from agno \u003e MAXAG to agno \u003e= MAXAG based on linux-next\nreport by kernel test robot (Dan Carpenter).", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52599", "url": "https://www.suse.com/security/cve/CVE-2023-52599" }, { "category": "external", "summary": "SUSE Bug 1221062 for CVE-2023-52599", "url": "https://bugzilla.suse.com/1221062" }, { "category": "external", "summary": "SUSE Bug 1228782 for CVE-2023-52599", "url": "https://bugzilla.suse.com/1228782" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 7.1, "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "important" } ], "title": "CVE-2023-52599" }, { "cve": "CVE-2023-52600", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52600" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\njfs: fix uaf in jfs_evict_inode\n\nWhen the execution of diMount(ipimap) fails, the object ipimap that has been\nreleased may be accessed in diFreeSpecial(). Asynchronous ipimap release occurs\nwhen rcu_core() calls jfs_free_node().\n\nTherefore, when diMount(ipimap) fails, sbi-\u003eipimap should not be initialized as\nipimap.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52600", "url": "https://www.suse.com/security/cve/CVE-2023-52600" }, { "category": "external", "summary": "SUSE Bug 1221071 for CVE-2023-52600", "url": "https://bugzilla.suse.com/1221071" }, { "category": "external", "summary": "SUSE Bug 1228783 for CVE-2023-52600", "url": "https://bugzilla.suse.com/1228783" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 7.8, "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "important" } ], "title": "CVE-2023-52600" }, { "cve": "CVE-2023-52601", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52601" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\njfs: fix array-index-out-of-bounds in dbAdjTree\n\nCurrently there is a bound check missing in the dbAdjTree while\naccessing the dmt_stree. To add the required check added the bool is_ctl\nwhich is required to determine the size as suggest in the following\ncommit.\nhttps://lore.kernel.org/linux-kernel-mentees/f9475918-2186-49b8-b801-6f0f9e75f4fa@oracle.com/", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52601", "url": "https://www.suse.com/security/cve/CVE-2023-52601" }, { "category": "external", "summary": "SUSE Bug 1221068 for CVE-2023-52601", "url": "https://bugzilla.suse.com/1221068" }, { "category": "external", "summary": "SUSE Bug 1228822 for CVE-2023-52601", "url": "https://bugzilla.suse.com/1228822" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 7.1, "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "important" } ], "title": "CVE-2023-52601" }, { "cve": "CVE-2023-52602", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52602" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\njfs: fix slab-out-of-bounds Read in dtSearch\n\nCurrently while searching for current page in the sorted entry table\nof the page there is a out of bound access. Added a bound check to fix\nthe error.\n\nDave:\nSet return code to -EIO", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52602", "url": "https://www.suse.com/security/cve/CVE-2023-52602" }, { "category": "external", "summary": "SUSE Bug 1221070 for CVE-2023-52602", "url": "https://bugzilla.suse.com/1221070" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.7, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52602" }, { "cve": "CVE-2023-52603", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52603" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nUBSAN: array-index-out-of-bounds in dtSplitRoot\n\nSyzkaller reported the following issue:\n\noop0: detected capacity change from 0 to 32768\n\nUBSAN: array-index-out-of-bounds in fs/jfs/jfs_dtree.c:1971:9\nindex -2 is out of range for type \u0027struct dtslot [128]\u0027\nCPU: 0 PID: 3613 Comm: syz-executor270 Not tainted 6.0.0-syzkaller-09423-g493ffd6605b2 #0\nHardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 09/22/2022\nCall Trace:\n \u003cTASK\u003e\n __dump_stack lib/dump_stack.c:88 [inline]\n dump_stack_lvl+0x1b1/0x28e lib/dump_stack.c:106\n ubsan_epilogue lib/ubsan.c:151 [inline]\n __ubsan_handle_out_of_bounds+0xdb/0x130 lib/ubsan.c:283\n dtSplitRoot+0x8d8/0x1900 fs/jfs/jfs_dtree.c:1971\n dtSplitUp fs/jfs/jfs_dtree.c:985 [inline]\n dtInsert+0x1189/0x6b80 fs/jfs/jfs_dtree.c:863\n jfs_mkdir+0x757/0xb00 fs/jfs/namei.c:270\n vfs_mkdir+0x3b3/0x590 fs/namei.c:4013\n do_mkdirat+0x279/0x550 fs/namei.c:4038\n __do_sys_mkdirat fs/namei.c:4053 [inline]\n __se_sys_mkdirat fs/namei.c:4051 [inline]\n __x64_sys_mkdirat+0x85/0x90 fs/namei.c:4051\n do_syscall_x64 arch/x86/entry/common.c:50 [inline]\n do_syscall_64+0x3d/0xb0 arch/x86/entry/common.c:80\n entry_SYSCALL_64_after_hwframe+0x63/0xcd\nRIP: 0033:0x7fcdc0113fd9\nCode: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 \u003c48\u003e 3d 01 f0 ff ff 73 01 c3 48 c7 c1 c0 ff ff ff f7 d8 64 89 01 48\nRSP: 002b:00007ffeb8bc67d8 EFLAGS: 00000246 ORIG_RAX: 0000000000000102\nRAX: ffffffffffffffda RBX: 0000000000000000 RCX: 00007fcdc0113fd9\nRDX: 0000000000000000 RSI: 0000000020000340 RDI: 0000000000000003\nRBP: 00007fcdc00d37a0 R08: 0000000000000000 R09: 00007fcdc00d37a0\nR10: 00005555559a72c0 R11: 0000000000000246 R12: 00000000f8008000\nR13: 0000000000000000 R14: 00083878000000f8 R15: 0000000000000000\n \u003c/TASK\u003e\n\nThe issue is caused when the value of fsi becomes less than -1.\nThe check to break the loop when fsi value becomes -1 is present\nbut syzbot was able to produce value less than -1 which cause the error.\nThis patch simply add the change for the values less than 0.\n\nThe patch is tested via syzbot.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52603", "url": "https://www.suse.com/security/cve/CVE-2023-52603" }, { "category": "external", "summary": "SUSE Bug 1221066 for CVE-2023-52603", "url": "https://bugzilla.suse.com/1221066" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52603" }, { "cve": "CVE-2023-52604", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52604" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nFS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree\n\nSyzkaller reported the following issue:\n\nUBSAN: array-index-out-of-bounds in fs/jfs/jfs_dmap.c:2867:6\nindex 196694 is out of range for type \u0027s8[1365]\u0027 (aka \u0027signed char[1365]\u0027)\nCPU: 1 PID: 109 Comm: jfsCommit Not tainted 6.6.0-rc3-syzkaller #0\nHardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 08/04/2023\nCall Trace:\n \u003cTASK\u003e\n __dump_stack lib/dump_stack.c:88 [inline]\n dump_stack_lvl+0x1e7/0x2d0 lib/dump_stack.c:106\n ubsan_epilogue lib/ubsan.c:217 [inline]\n __ubsan_handle_out_of_bounds+0x11c/0x150 lib/ubsan.c:348\n dbAdjTree+0x474/0x4f0 fs/jfs/jfs_dmap.c:2867\n dbJoin+0x210/0x2d0 fs/jfs/jfs_dmap.c:2834\n dbFreeBits+0x4eb/0xda0 fs/jfs/jfs_dmap.c:2331\n dbFreeDmap fs/jfs/jfs_dmap.c:2080 [inline]\n dbFree+0x343/0x650 fs/jfs/jfs_dmap.c:402\n txFreeMap+0x798/0xd50 fs/jfs/jfs_txnmgr.c:2534\n txUpdateMap+0x342/0x9e0\n txLazyCommit fs/jfs/jfs_txnmgr.c:2664 [inline]\n jfs_lazycommit+0x47a/0xb70 fs/jfs/jfs_txnmgr.c:2732\n kthread+0x2d3/0x370 kernel/kthread.c:388\n ret_from_fork+0x48/0x80 arch/x86/kernel/process.c:147\n ret_from_fork_asm+0x11/0x20 arch/x86/entry/entry_64.S:304\n \u003c/TASK\u003e\n================================================================================\nKernel panic - not syncing: UBSAN: panic_on_warn set ...\nCPU: 1 PID: 109 Comm: jfsCommit Not tainted 6.6.0-rc3-syzkaller #0\nHardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 08/04/2023\nCall Trace:\n \u003cTASK\u003e\n __dump_stack lib/dump_stack.c:88 [inline]\n dump_stack_lvl+0x1e7/0x2d0 lib/dump_stack.c:106\n panic+0x30f/0x770 kernel/panic.c:340\n check_panic_on_warn+0x82/0xa0 kernel/panic.c:236\n ubsan_epilogue lib/ubsan.c:223 [inline]\n __ubsan_handle_out_of_bounds+0x13c/0x150 lib/ubsan.c:348\n dbAdjTree+0x474/0x4f0 fs/jfs/jfs_dmap.c:2867\n dbJoin+0x210/0x2d0 fs/jfs/jfs_dmap.c:2834\n dbFreeBits+0x4eb/0xda0 fs/jfs/jfs_dmap.c:2331\n dbFreeDmap fs/jfs/jfs_dmap.c:2080 [inline]\n dbFree+0x343/0x650 fs/jfs/jfs_dmap.c:402\n txFreeMap+0x798/0xd50 fs/jfs/jfs_txnmgr.c:2534\n txUpdateMap+0x342/0x9e0\n txLazyCommit fs/jfs/jfs_txnmgr.c:2664 [inline]\n jfs_lazycommit+0x47a/0xb70 fs/jfs/jfs_txnmgr.c:2732\n kthread+0x2d3/0x370 kernel/kthread.c:388\n ret_from_fork+0x48/0x80 arch/x86/kernel/process.c:147\n ret_from_fork_asm+0x11/0x20 arch/x86/entry/entry_64.S:304\n \u003c/TASK\u003e\nKernel Offset: disabled\nRebooting in 86400 seconds..\n\nThe issue is caused when the value of lp becomes greater than\nCTLTREESIZE which is the max size of stree. Adding a simple check\nsolves this issue.\n\nDave:\nAs the function returns a void, good error handling\nwould require a more intrusive code reorganization, so I modified\nOsama\u0027s patch at use WARN_ON_ONCE for lack of a cleaner option.\n\nThe patch is tested via syzbot.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52604", "url": "https://www.suse.com/security/cve/CVE-2023-52604" }, { "category": "external", "summary": "SUSE Bug 1221067 for CVE-2023-52604", "url": "https://bugzilla.suse.com/1221067" }, { "category": "external", "summary": "SUSE Bug 1228739 for CVE-2023-52604", "url": "https://bugzilla.suse.com/1228739" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 7.8, "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "important" } ], "title": "CVE-2023-52604" }, { "cve": "CVE-2023-52605", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52605" } ], "notes": [ { "category": "general", "text": "This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52605", "url": "https://www.suse.com/security/cve/CVE-2023-52605" }, { "category": "external", "summary": "SUSE Bug 1221039 for CVE-2023-52605", "url": "https://bugzilla.suse.com/1221039" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.4, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52605" }, { "cve": "CVE-2023-52606", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52606" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\npowerpc/lib: Validate size for vector operations\n\nSome of the fp/vmx code in sstep.c assume a certain maximum size for the\ninstructions being emulated. The size of those operations however is\ndetermined separately in analyse_instr().\n\nAdd a check to validate the assumption on the maximum size of the\noperations, so as to prevent any unintended kernel stack corruption.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52606", "url": "https://www.suse.com/security/cve/CVE-2023-52606" }, { "category": "external", "summary": "SUSE Bug 1221069 for CVE-2023-52606", "url": "https://bugzilla.suse.com/1221069" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52606" }, { "cve": "CVE-2023-52607", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52607" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\npowerpc/mm: Fix null-pointer dereference in pgtable_cache_add\n\nkasprintf() returns a pointer to dynamically allocated memory\nwhich can be NULL upon failure. Ensure the allocation was successful\nby checking the pointer validity.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52607", "url": "https://www.suse.com/security/cve/CVE-2023-52607" }, { "category": "external", "summary": "SUSE Bug 1221061 for CVE-2023-52607", "url": "https://bugzilla.suse.com/1221061" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52607" }, { "cve": "CVE-2023-52608", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52608" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nfirmware: arm_scmi: Check mailbox/SMT channel for consistency\n\nOn reception of a completion interrupt the shared memory area is accessed\nto retrieve the message header at first and then, if the message sequence\nnumber identifies a transaction which is still pending, the related\npayload is fetched too.\n\nWhen an SCMI command times out the channel ownership remains with the\nplatform until eventually a late reply is received and, as a consequence,\nany further transmission attempt remains pending, waiting for the channel\nto be relinquished by the platform.\n\nOnce that late reply is received the channel ownership is given back\nto the agent and any pending request is then allowed to proceed and\noverwrite the SMT area of the just delivered late reply; then the wait\nfor the reply to the new request starts.\n\nIt has been observed that the spurious IRQ related to the late reply can\nbe wrongly associated with the freshly enqueued request: when that happens\nthe SCMI stack in-flight lookup procedure is fooled by the fact that the\nmessage header now present in the SMT area is related to the new pending\ntransaction, even though the real reply has still to arrive.\n\nThis race-condition on the A2P channel can be detected by looking at the\nchannel status bits: a genuine reply from the platform will have set the\nchannel free bit before triggering the completion IRQ.\n\nAdd a consistency check to validate such condition in the A2P ISR.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52608", "url": "https://www.suse.com/security/cve/CVE-2023-52608" }, { "category": "external", "summary": "SUSE Bug 1221375 for CVE-2023-52608", "url": "https://bugzilla.suse.com/1221375" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52608" }, { "cve": "CVE-2023-52612", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52612" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ncrypto: scomp - fix req-\u003edst buffer overflow\n\nThe req-\u003edst buffer size should be checked before copying from the\nscomp_scratch-\u003edst to avoid req-\u003edst buffer overflow problem.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52612", "url": "https://www.suse.com/security/cve/CVE-2023-52612" }, { "category": "external", "summary": "SUSE Bug 1221616 for CVE-2023-52612", "url": "https://bugzilla.suse.com/1221616" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "important" } ], "title": "CVE-2023-52612" }, { "cve": "CVE-2023-52615", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52615" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nhwrng: core - Fix page fault dead lock on mmap-ed hwrng\n\nThere is a dead-lock in the hwrng device read path. This triggers\nwhen the user reads from /dev/hwrng into memory also mmap-ed from\n/dev/hwrng. The resulting page fault triggers a recursive read\nwhich then dead-locks.\n\nFix this by using a stack buffer when calling copy_to_user.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52615", "url": "https://www.suse.com/security/cve/CVE-2023-52615" }, { "category": "external", "summary": "SUSE Bug 1221614 for CVE-2023-52615", "url": "https://bugzilla.suse.com/1221614" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.4, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52615" }, { "cve": "CVE-2023-52617", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52617" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nPCI: switchtec: Fix stdev_release() crash after surprise hot remove\n\nA PCI device hot removal may occur while stdev-\u003ecdev is held open. The call\nto stdev_release() then happens during close or exit, at a point way past\nswitchtec_pci_remove(). Otherwise the last ref would vanish with the\ntrailing put_device(), just before return.\n\nAt that later point in time, the devm cleanup has already removed the\nstdev-\u003emmio_mrpc mapping. Also, the stdev-\u003epdev reference was not a counted\none. Therefore, in DMA mode, the iowrite32() in stdev_release() will cause\na fatal page fault, and the subsequent dma_free_coherent(), if reached,\nwould pass a stale \u0026stdev-\u003epdev-\u003edev pointer.\n\nFix by moving MRPC DMA shutdown into switchtec_pci_remove(), after\nstdev_kill(). Counting the stdev-\u003epdev ref is now optional, but may prevent\nfuture accidents.\n\nReproducible via the script at\nhttps://lore.kernel.org/r/20231113212150.96410-1-dns@arista.com", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52617", "url": "https://www.suse.com/security/cve/CVE-2023-52617" }, { "category": "external", "summary": "SUSE Bug 1221613 for CVE-2023-52617", "url": "https://bugzilla.suse.com/1221613" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.4, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52617" }, { "cve": "CVE-2023-52619", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52619" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\npstore/ram: Fix crash when setting number of cpus to an odd number\n\nWhen the number of cpu cores is adjusted to 7 or other odd numbers,\nthe zone size will become an odd number.\nThe address of the zone will become:\n addr of zone0 = BASE\n addr of zone1 = BASE + zone_size\n addr of zone2 = BASE + zone_size*2\n ...\nThe address of zone1/3/5/7 will be mapped to non-alignment va.\nEventually crashes will occur when accessing these va.\n\nSo, use ALIGN_DOWN() to make sure the zone size is even\nto avoid this bug.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52619", "url": "https://www.suse.com/security/cve/CVE-2023-52619" }, { "category": "external", "summary": "SUSE Bug 1221618 for CVE-2023-52619", "url": "https://bugzilla.suse.com/1221618" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52619" }, { "cve": "CVE-2023-52621", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52621" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Check rcu_read_lock_trace_held() before calling bpf map helpers\n\nThese three bpf_map_{lookup,update,delete}_elem() helpers are also\navailable for sleepable bpf program, so add the corresponding lock\nassertion for sleepable bpf program, otherwise the following warning\nwill be reported when a sleepable bpf program manipulates bpf map under\ninterpreter mode (aka bpf_jit_enable=0):\n\n WARNING: CPU: 3 PID: 4985 at kernel/bpf/helpers.c:40 ......\n CPU: 3 PID: 4985 Comm: test_progs Not tainted 6.6.0+ #2\n Hardware name: QEMU Standard PC (i440FX + PIIX, 1996) ......\n RIP: 0010:bpf_map_lookup_elem+0x54/0x60\n ......\n Call Trace:\n \u003cTASK\u003e\n ? __warn+0xa5/0x240\n ? bpf_map_lookup_elem+0x54/0x60\n ? report_bug+0x1ba/0x1f0\n ? handle_bug+0x40/0x80\n ? exc_invalid_op+0x18/0x50\n ? asm_exc_invalid_op+0x1b/0x20\n ? __pfx_bpf_map_lookup_elem+0x10/0x10\n ? rcu_lockdep_current_cpu_online+0x65/0xb0\n ? rcu_is_watching+0x23/0x50\n ? bpf_map_lookup_elem+0x54/0x60\n ? __pfx_bpf_map_lookup_elem+0x10/0x10\n ___bpf_prog_run+0x513/0x3b70\n __bpf_prog_run32+0x9d/0xd0\n ? __bpf_prog_enter_sleepable_recur+0xad/0x120\n ? __bpf_prog_enter_sleepable_recur+0x3e/0x120\n bpf_trampoline_6442580665+0x4d/0x1000\n __x64_sys_getpgid+0x5/0x30\n ? do_syscall_64+0x36/0xb0\n entry_SYSCALL_64_after_hwframe+0x6e/0x76\n \u003c/TASK\u003e", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52621", "url": "https://www.suse.com/security/cve/CVE-2023-52621" }, { "category": "external", "summary": "SUSE Bug 1222073 for CVE-2023-52621", "url": "https://bugzilla.suse.com/1222073" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52621" }, { "cve": "CVE-2023-52623", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52623" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nSUNRPC: Fix a suspicious RCU usage warning\n\nI received the following warning while running cthon against an ontap\nserver running pNFS:\n\n[ 57.202521] =============================\n[ 57.202522] WARNING: suspicious RCU usage\n[ 57.202523] 6.7.0-rc3-g2cc14f52aeb7 #41492 Not tainted\n[ 57.202525] -----------------------------\n[ 57.202525] net/sunrpc/xprtmultipath.c:349 RCU-list traversed in non-reader section!!\n[ 57.202527]\n other info that might help us debug this:\n\n[ 57.202528]\n rcu_scheduler_active = 2, debug_locks = 1\n[ 57.202529] no locks held by test5/3567.\n[ 57.202530]\n stack backtrace:\n[ 57.202532] CPU: 0 PID: 3567 Comm: test5 Not tainted 6.7.0-rc3-g2cc14f52aeb7 #41492 5b09971b4965c0aceba19f3eea324a4a806e227e\n[ 57.202534] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS unknown 2/2/2022\n[ 57.202536] Call Trace:\n[ 57.202537] \u003cTASK\u003e\n[ 57.202540] dump_stack_lvl+0x77/0xb0\n[ 57.202551] lockdep_rcu_suspicious+0x154/0x1a0\n[ 57.202556] rpc_xprt_switch_has_addr+0x17c/0x190 [sunrpc ebe02571b9a8ceebf7d98e71675af20c19bdb1f6]\n[ 57.202596] rpc_clnt_setup_test_and_add_xprt+0x50/0x180 [sunrpc ebe02571b9a8ceebf7d98e71675af20c19bdb1f6]\n[ 57.202621] ? rpc_clnt_add_xprt+0x254/0x300 [sunrpc ebe02571b9a8ceebf7d98e71675af20c19bdb1f6]\n[ 57.202646] rpc_clnt_add_xprt+0x27a/0x300 [sunrpc ebe02571b9a8ceebf7d98e71675af20c19bdb1f6]\n[ 57.202671] ? __pfx_rpc_clnt_setup_test_and_add_xprt+0x10/0x10 [sunrpc ebe02571b9a8ceebf7d98e71675af20c19bdb1f6]\n[ 57.202696] nfs4_pnfs_ds_connect+0x345/0x760 [nfsv4 c716d88496ded0ea6d289bbea684fa996f9b57a9]\n[ 57.202728] ? __pfx_nfs4_test_session_trunk+0x10/0x10 [nfsv4 c716d88496ded0ea6d289bbea684fa996f9b57a9]\n[ 57.202754] nfs4_fl_prepare_ds+0x75/0xc0 [nfs_layout_nfsv41_files e3a4187f18ae8a27b630f9feae6831b584a9360a]\n[ 57.202760] filelayout_write_pagelist+0x4a/0x200 [nfs_layout_nfsv41_files e3a4187f18ae8a27b630f9feae6831b584a9360a]\n[ 57.202765] pnfs_generic_pg_writepages+0xbe/0x230 [nfsv4 c716d88496ded0ea6d289bbea684fa996f9b57a9]\n[ 57.202788] __nfs_pageio_add_request+0x3fd/0x520 [nfs 6c976fa593a7c2976f5a0aeb4965514a828e6902]\n[ 57.202813] nfs_pageio_add_request+0x18b/0x390 [nfs 6c976fa593a7c2976f5a0aeb4965514a828e6902]\n[ 57.202831] nfs_do_writepage+0x116/0x1e0 [nfs 6c976fa593a7c2976f5a0aeb4965514a828e6902]\n[ 57.202849] nfs_writepages_callback+0x13/0x30 [nfs 6c976fa593a7c2976f5a0aeb4965514a828e6902]\n[ 57.202866] write_cache_pages+0x265/0x450\n[ 57.202870] ? __pfx_nfs_writepages_callback+0x10/0x10 [nfs 6c976fa593a7c2976f5a0aeb4965514a828e6902]\n[ 57.202891] nfs_writepages+0x141/0x230 [nfs 6c976fa593a7c2976f5a0aeb4965514a828e6902]\n[ 57.202913] do_writepages+0xd2/0x230\n[ 57.202917] ? filemap_fdatawrite_wbc+0x5c/0x80\n[ 57.202921] filemap_fdatawrite_wbc+0x67/0x80\n[ 57.202924] filemap_write_and_wait_range+0xd9/0x170\n[ 57.202930] nfs_wb_all+0x49/0x180 [nfs 6c976fa593a7c2976f5a0aeb4965514a828e6902]\n[ 57.202947] nfs4_file_flush+0x72/0xb0 [nfsv4 c716d88496ded0ea6d289bbea684fa996f9b57a9]\n[ 57.202969] __se_sys_close+0x46/0xd0\n[ 57.202972] do_syscall_64+0x68/0x100\n[ 57.202975] ? do_syscall_64+0x77/0x100\n[ 57.202976] ? do_syscall_64+0x77/0x100\n[ 57.202979] entry_SYSCALL_64_after_hwframe+0x6e/0x76\n[ 57.202982] RIP: 0033:0x7fe2b12e4a94\n[ 57.202985] Code: 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa 80 3d d5 18 0e 00 00 74 13 b8 03 00 00 00 0f 05 \u003c48\u003e 3d 00 f0 ff ff 77 44 c3 0f 1f 00 48 83 ec 18 89 7c 24 0c e8 c3\n[ 57.202987] RSP: 002b:00007ffe857ddb38 EFLAGS: 00000202 ORIG_RAX: 0000000000000003\n[ 57.202989] RAX: ffffffffffffffda RBX: 00007ffe857dfd68 RCX: 00007fe2b12e4a94\n[ 57.202991] RDX: 0000000000002000 RSI: 00007ffe857ddc40 RDI: 0000000000000003\n[ 57.202992] RBP: 00007ffe857dfc50 R08: 7fffffffffffffff R09: 0000000065650f49\n[ 57.202993] R10: 00007f\n---truncated---", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52623", "url": "https://www.suse.com/security/cve/CVE-2023-52623" }, { "category": "external", "summary": "SUSE Bug 1222060 for CVE-2023-52623", "url": "https://bugzilla.suse.com/1222060" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52623" }, { "cve": "CVE-2023-52627", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52627" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\niio: adc: ad7091r: Allow users to configure device events\n\nAD7091R-5 devices are supported by the ad7091r-5 driver together with\nthe ad7091r-base driver. Those drivers declared iio events for notifying\nuser space when ADC readings fall bellow the thresholds of low limit\nregisters or above the values set in high limit registers.\nHowever, to configure iio events and their thresholds, a set of callback\nfunctions must be implemented and those were not present until now.\nThe consequence of trying to configure ad7091r-5 events without the\nproper callback functions was a null pointer dereference in the kernel\nbecause the pointers to the callback functions were not set.\n\nImplement event configuration callbacks allowing users to read/write\nevent thresholds and enable/disable event generation.\n\nSince the event spec structs are generic to AD7091R devices, also move\nthose from the ad7091r-5 driver the base driver so they can be reused\nwhen support for ad7091r-2/-4/-8 be added.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52627", "url": "https://www.suse.com/security/cve/CVE-2023-52627" }, { "category": "external", "summary": "SUSE Bug 1222051 for CVE-2023-52627", "url": "https://bugzilla.suse.com/1222051" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52627" }, { "cve": "CVE-2023-52628", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52628" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: nftables: exthdr: fix 4-byte stack OOB write\n\nIf priv-\u003elen is a multiple of 4, then dst[len / 4] can write past\nthe destination array which leads to stack corruption.\n\nThis construct is necessary to clean the remainder of the register\nin case -\u003elen is NOT a multiple of the register size, so make it\nconditional just like nft_payload.c does.\n\nThe bug was added in 4.1 cycle and then copied/inherited when\ntcp/sctp and ip option support was added.\n\nBug reported by Zero Day Initiative project (ZDI-CAN-21950,\nZDI-CAN-21951, ZDI-CAN-21961).", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52628", "url": "https://www.suse.com/security/cve/CVE-2023-52628" }, { "category": "external", "summary": "SUSE Bug 1222117 for CVE-2023-52628", "url": "https://bugzilla.suse.com/1222117" }, { "category": "external", "summary": "SUSE Bug 1222118 for CVE-2023-52628", "url": "https://bugzilla.suse.com/1222118" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 7.8, "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "important" } ], "title": "CVE-2023-52628" }, { "cve": "CVE-2023-52632", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52632" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amdkfd: Fix lock dependency warning with srcu\n\n======================================================\nWARNING: possible circular locking dependency detected\n6.5.0-kfd-yangp #2289 Not tainted\n------------------------------------------------------\nkworker/0:2/996 is trying to acquire lock:\n (srcu){.+.+}-{0:0}, at: __synchronize_srcu+0x5/0x1a0\n\nbut task is already holding lock:\n ((work_completion)(\u0026svms-\u003edeferred_list_work)){+.+.}-{0:0}, at:\n\tprocess_one_work+0x211/0x560\n\nwhich lock already depends on the new lock.\n\nthe existing dependency chain (in reverse order) is:\n\n-\u003e #3 ((work_completion)(\u0026svms-\u003edeferred_list_work)){+.+.}-{0:0}:\n __flush_work+0x88/0x4f0\n svm_range_list_lock_and_flush_work+0x3d/0x110 [amdgpu]\n svm_range_set_attr+0xd6/0x14c0 [amdgpu]\n kfd_ioctl+0x1d1/0x630 [amdgpu]\n __x64_sys_ioctl+0x88/0xc0\n\n-\u003e #2 (\u0026info-\u003elock#2){+.+.}-{3:3}:\n __mutex_lock+0x99/0xc70\n amdgpu_amdkfd_gpuvm_restore_process_bos+0x54/0x740 [amdgpu]\n restore_process_helper+0x22/0x80 [amdgpu]\n restore_process_worker+0x2d/0xa0 [amdgpu]\n process_one_work+0x29b/0x560\n worker_thread+0x3d/0x3d0\n\n-\u003e #1 ((work_completion)(\u0026(\u0026process-\u003erestore_work)-\u003ework)){+.+.}-{0:0}:\n __flush_work+0x88/0x4f0\n __cancel_work_timer+0x12c/0x1c0\n kfd_process_notifier_release_internal+0x37/0x1f0 [amdgpu]\n __mmu_notifier_release+0xad/0x240\n exit_mmap+0x6a/0x3a0\n mmput+0x6a/0x120\n do_exit+0x322/0xb90\n do_group_exit+0x37/0xa0\n __x64_sys_exit_group+0x18/0x20\n do_syscall_64+0x38/0x80\n\n-\u003e #0 (srcu){.+.+}-{0:0}:\n __lock_acquire+0x1521/0x2510\n lock_sync+0x5f/0x90\n __synchronize_srcu+0x4f/0x1a0\n __mmu_notifier_release+0x128/0x240\n exit_mmap+0x6a/0x3a0\n mmput+0x6a/0x120\n svm_range_deferred_list_work+0x19f/0x350 [amdgpu]\n process_one_work+0x29b/0x560\n worker_thread+0x3d/0x3d0\n\nother info that might help us debug this:\nChain exists of:\n srcu --\u003e \u0026info-\u003elock#2 --\u003e (work_completion)(\u0026svms-\u003edeferred_list_work)\n\nPossible unsafe locking scenario:\n\n CPU0 CPU1\n ---- ----\n lock((work_completion)(\u0026svms-\u003edeferred_list_work));\n lock(\u0026info-\u003elock#2);\n\t\t\tlock((work_completion)(\u0026svms-\u003edeferred_list_work));\n sync(srcu);", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52632", "url": "https://www.suse.com/security/cve/CVE-2023-52632" }, { "category": "external", "summary": "SUSE Bug 1222274 for CVE-2023-52632", "url": "https://bugzilla.suse.com/1222274" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52632" }, { "cve": "CVE-2023-52636", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52636" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nlibceph: just wait for more data to be available on the socket\n\nA short read may occur while reading the message footer from the\nsocket. Later, when the socket is ready for another read, the\nmessenger invokes all read_partial_*() handlers, including\nread_partial_sparse_msg_data(). The expectation is that\nread_partial_sparse_msg_data() would bail, allowing the messenger to\ninvoke read_partial() for the footer and pick up where it left off.\n\nHowever read_partial_sparse_msg_data() violates that and ends up\ncalling into the state machine in the OSD client. The sparse-read\nstate machine assumes that it\u0027s a new op and interprets some piece of\nthe footer as the sparse-read header and returns bogus extents/data\nlength, etc.\n\nTo determine whether read_partial_sparse_msg_data() should bail, let\u0027s\nreuse cursor-\u003etotal_resid. Because once it reaches to zero that means\nall the extents and data have been successfully received in last read,\nelse it could break out when partially reading any of the extents and\ndata. And then osd_sparse_read() could continue where it left off.\n\n[ idryomov: changelog ]", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52636", "url": "https://www.suse.com/security/cve/CVE-2023-52636" }, { "category": "external", "summary": "SUSE Bug 1222247 for CVE-2023-52636", "url": "https://bugzilla.suse.com/1222247" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52636" }, { "cve": "CVE-2023-52637", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52637" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ncan: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER)\n\nLock jsk-\u003esk to prevent UAF when setsockopt(..., SO_J1939_FILTER, ...)\nmodifies jsk-\u003efilters while receiving packets.\n\nFollowing trace was seen on affected system:\n ==================================================================\n BUG: KASAN: slab-use-after-free in j1939_sk_recv_match_one+0x1af/0x2d0 [can_j1939]\n Read of size 4 at addr ffff888012144014 by task j1939/350\n\n CPU: 0 PID: 350 Comm: j1939 Tainted: G W OE 6.5.0-rc5 #1\n Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.13.0-1ubuntu1.1 04/01/2014\n Call Trace:\n print_report+0xd3/0x620\n ? kasan_complete_mode_report_info+0x7d/0x200\n ? j1939_sk_recv_match_one+0x1af/0x2d0 [can_j1939]\n kasan_report+0xc2/0x100\n ? j1939_sk_recv_match_one+0x1af/0x2d0 [can_j1939]\n __asan_load4+0x84/0xb0\n j1939_sk_recv_match_one+0x1af/0x2d0 [can_j1939]\n j1939_sk_recv+0x20b/0x320 [can_j1939]\n ? __kasan_check_write+0x18/0x20\n ? __pfx_j1939_sk_recv+0x10/0x10 [can_j1939]\n ? j1939_simple_recv+0x69/0x280 [can_j1939]\n ? j1939_ac_recv+0x5e/0x310 [can_j1939]\n j1939_can_recv+0x43f/0x580 [can_j1939]\n ? __pfx_j1939_can_recv+0x10/0x10 [can_j1939]\n ? raw_rcv+0x42/0x3c0 [can_raw]\n ? __pfx_j1939_can_recv+0x10/0x10 [can_j1939]\n can_rcv_filter+0x11f/0x350 [can]\n can_receive+0x12f/0x190 [can]\n ? __pfx_can_rcv+0x10/0x10 [can]\n can_rcv+0xdd/0x130 [can]\n ? __pfx_can_rcv+0x10/0x10 [can]\n __netif_receive_skb_one_core+0x13d/0x150\n ? __pfx___netif_receive_skb_one_core+0x10/0x10\n ? __kasan_check_write+0x18/0x20\n ? _raw_spin_lock_irq+0x8c/0xe0\n __netif_receive_skb+0x23/0xb0\n process_backlog+0x107/0x260\n __napi_poll+0x69/0x310\n net_rx_action+0x2a1/0x580\n ? __pfx_net_rx_action+0x10/0x10\n ? __pfx__raw_spin_lock+0x10/0x10\n ? handle_irq_event+0x7d/0xa0\n __do_softirq+0xf3/0x3f8\n do_softirq+0x53/0x80\n \u003c/IRQ\u003e\n \u003cTASK\u003e\n __local_bh_enable_ip+0x6e/0x70\n netif_rx+0x16b/0x180\n can_send+0x32b/0x520 [can]\n ? __pfx_can_send+0x10/0x10 [can]\n ? __check_object_size+0x299/0x410\n raw_sendmsg+0x572/0x6d0 [can_raw]\n ? __pfx_raw_sendmsg+0x10/0x10 [can_raw]\n ? apparmor_socket_sendmsg+0x2f/0x40\n ? __pfx_raw_sendmsg+0x10/0x10 [can_raw]\n sock_sendmsg+0xef/0x100\n sock_write_iter+0x162/0x220\n ? __pfx_sock_write_iter+0x10/0x10\n ? __rtnl_unlock+0x47/0x80\n ? security_file_permission+0x54/0x320\n vfs_write+0x6ba/0x750\n ? __pfx_vfs_write+0x10/0x10\n ? __fget_light+0x1ca/0x1f0\n ? __rcu_read_unlock+0x5b/0x280\n ksys_write+0x143/0x170\n ? __pfx_ksys_write+0x10/0x10\n ? __kasan_check_read+0x15/0x20\n ? fpregs_assert_state_consistent+0x62/0x70\n __x64_sys_write+0x47/0x60\n do_syscall_64+0x60/0x90\n ? do_syscall_64+0x6d/0x90\n ? irqentry_exit+0x3f/0x50\n ? exc_page_fault+0x79/0xf0\n entry_SYSCALL_64_after_hwframe+0x6e/0xd8\n\n Allocated by task 348:\n kasan_save_stack+0x2a/0x50\n kasan_set_track+0x29/0x40\n kasan_save_alloc_info+0x1f/0x30\n __kasan_kmalloc+0xb5/0xc0\n __kmalloc_node_track_caller+0x67/0x160\n j1939_sk_setsockopt+0x284/0x450 [can_j1939]\n __sys_setsockopt+0x15c/0x2f0\n __x64_sys_setsockopt+0x6b/0x80\n do_syscall_64+0x60/0x90\n entry_SYSCALL_64_after_hwframe+0x6e/0xd8\n\n Freed by task 349:\n kasan_save_stack+0x2a/0x50\n kasan_set_track+0x29/0x40\n kasan_save_free_info+0x2f/0x50\n __kasan_slab_free+0x12e/0x1c0\n __kmem_cache_free+0x1b9/0x380\n kfree+0x7a/0x120\n j1939_sk_setsockopt+0x3b2/0x450 [can_j1939]\n __sys_setsockopt+0x15c/0x2f0\n __x64_sys_setsockopt+0x6b/0x80\n do_syscall_64+0x60/0x90\n entry_SYSCALL_64_after_hwframe+0x6e/0xd8", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52637", "url": "https://www.suse.com/security/cve/CVE-2023-52637" }, { "category": "external", "summary": "SUSE Bug 1222291 for CVE-2023-52637", "url": "https://bugzilla.suse.com/1222291" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52637" }, { "cve": "CVE-2023-52639", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-52639" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: s390: vsie: fix race during shadow creation\n\nRight now it is possible to see gmap-\u003eprivate being zero in\nkvm_s390_vsie_gmap_notifier resulting in a crash. This is due to the\nfact that we add gmap-\u003eprivate == kvm after creation:\n\nstatic int acquire_gmap_shadow(struct kvm_vcpu *vcpu,\n struct vsie_page *vsie_page)\n{\n[...]\n gmap = gmap_shadow(vcpu-\u003earch.gmap, asce, edat);\n if (IS_ERR(gmap))\n return PTR_ERR(gmap);\n gmap-\u003eprivate = vcpu-\u003ekvm;\n\nLet children inherit the private field of the parent.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-52639", "url": "https://www.suse.com/security/cve/CVE-2023-52639" }, { "category": "external", "summary": "SUSE Bug 1222300 for CVE-2023-52639", "url": "https://bugzilla.suse.com/1222300" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-52639" }, { "cve": "CVE-2023-6356", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-6356" } ], "notes": [ { "category": "general", "text": "A flaw was found in the Linux kernel\u0027s NVMe driver. This issue may allow an unauthenticated malicious actor to send a set of crafted TCP packages when using NVMe over TCP, leading the NVMe driver to a NULL pointer dereference in the NVMe driver and causing kernel panic and a denial of service.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-6356", "url": "https://www.suse.com/security/cve/CVE-2023-6356" }, { "category": "external", "summary": "SUSE Bug 1217987 for CVE-2023-6356", "url": "https://bugzilla.suse.com/1217987" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-6356" }, { "cve": "CVE-2023-6535", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-6535" } ], "notes": [ { "category": "general", "text": "A flaw was found in the Linux kernel\u0027s NVMe driver. This issue may allow an unauthenticated malicious actor to send a set of crafted TCP packages when using NVMe over TCP, leading the NVMe driver to a NULL pointer dereference in the NVMe driver, causing kernel panic and a denial of service.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-6535", "url": "https://www.suse.com/security/cve/CVE-2023-6535" }, { "category": "external", "summary": "SUSE Bug 1217988 for CVE-2023-6535", "url": "https://bugzilla.suse.com/1217988" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-6535" }, { "cve": "CVE-2023-6536", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-6536" } ], "notes": [ { "category": "general", "text": "A flaw was found in the Linux kernel\u0027s NVMe driver. This issue may allow an unauthenticated malicious actor to send a set of crafted TCP packages when using NVMe over TCP, leading the NVMe driver to a NULL pointer dereference in the NVMe driver, causing kernel panic and a denial of service.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-6536", "url": "https://www.suse.com/security/cve/CVE-2023-6536" }, { "category": "external", "summary": "SUSE Bug 1217989 for CVE-2023-6536", "url": "https://bugzilla.suse.com/1217989" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-6536" }, { "cve": "CVE-2023-7042", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-7042" } ], "notes": [ { "category": "general", "text": "A null pointer dereference vulnerability was found in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() in drivers/net/wireless/ath/ath10k/wmi-tlv.c in the Linux kernel. This issue could be exploited to trigger a denial of service.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-7042", "url": "https://www.suse.com/security/cve/CVE-2023-7042" }, { "category": "external", "summary": "SUSE Bug 1218336 for CVE-2023-7042", "url": "https://bugzilla.suse.com/1218336" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.4, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-7042" }, { "cve": "CVE-2023-7192", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-7192" } ], "notes": [ { "category": "general", "text": "A memory leak problem was found in ctnetlink_create_conntrack in net/netfilter/nf_conntrack_netlink.c in the Linux Kernel. This issue may allow a local attacker with CAP_NET_ADMIN privileges to cause a denial of service (DoS) attack due to a refcount overflow.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-7192", "url": "https://www.suse.com/security/cve/CVE-2023-7192" }, { "category": "external", "summary": "SUSE Bug 1218479 for CVE-2023-7192", "url": "https://bugzilla.suse.com/1218479" }, { "category": "external", "summary": "SUSE Bug 1227675 for CVE-2023-7192", "url": "https://bugzilla.suse.com/1227675" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.4, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2023-7192" }, { "cve": "CVE-2024-0841", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-0841" } ], "notes": [ { "category": "general", "text": "A null pointer dereference flaw was found in the hugetlbfs_fill_super function in the Linux kernel hugetlbfs (HugeTLB pages) functionality. This issue may allow a local user to crash the system or potentially escalate their privileges on the system.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-0841", "url": "https://www.suse.com/security/cve/CVE-2024-0841" }, { "category": "external", "summary": "SUSE Bug 1219264 for CVE-2024-0841", "url": "https://bugzilla.suse.com/1219264" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.4, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-0841" }, { "cve": "CVE-2024-2201", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-2201" } ], "notes": [ { "category": "general", "text": "A cross-privilege Spectre v2 vulnerability allows attackers to bypass all deployed mitigations, including the recent Fine(IBT), and to leak arbitrary Linux kernel memory on Intel systems.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-2201", "url": "https://www.suse.com/security/cve/CVE-2024-2201" }, { "category": "external", "summary": "SUSE Bug 1212111 for CVE-2024-2201", "url": "https://bugzilla.suse.com/1212111" }, { "category": "external", "summary": "SUSE Bug 1217339 for CVE-2024-2201", "url": "https://bugzilla.suse.com/1217339" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.1, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-2201" }, { "cve": "CVE-2024-22099", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-22099" } ], "notes": [ { "category": "general", "text": "NULL Pointer Dereference vulnerability in Linux Linux kernel kernel on Linux, x86, ARM (net, bluetooth modules) allows Overflow Buffers. This vulnerability is associated with program files /net/bluetooth/rfcomm/core.C.\n\nThis issue affects Linux kernel: v2.6.12-rc2.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-22099", "url": "https://www.suse.com/security/cve/CVE-2024-22099" }, { "category": "external", "summary": "SUSE Bug 1219170 for CVE-2024-22099", "url": "https://bugzilla.suse.com/1219170" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.3, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-22099" }, { "cve": "CVE-2024-23307", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-23307" } ], "notes": [ { "category": "general", "text": "Integer Overflow or Wraparound vulnerability in Linux Linux kernel kernel on Linux, x86, ARM (md, raid, raid5 modules) allows Forced Integer Overflow.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-23307", "url": "https://www.suse.com/security/cve/CVE-2024-23307" }, { "category": "external", "summary": "SUSE Bug 1219169 for CVE-2024-23307", "url": "https://bugzilla.suse.com/1219169" }, { "category": "external", "summary": "SUSE Bug 1220145 for CVE-2024-23307", "url": "https://bugzilla.suse.com/1220145" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 7.8, "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "important" } ], "title": "CVE-2024-23307" }, { "cve": "CVE-2024-23850", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-23850" } ], "notes": [ { "category": "general", "text": "In btrfs_get_root_ref in fs/btrfs/disk-io.c in the Linux kernel through 6.7.1, there can be an assertion failure and crash because a subvolume can be read out too soon after its root item is inserted upon subvolume creation.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-23850", "url": "https://www.suse.com/security/cve/CVE-2024-23850" }, { "category": "external", "summary": "SUSE Bug 1219126 for CVE-2024-23850", "url": "https://bugzilla.suse.com/1219126" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.1, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-23850" }, { "cve": "CVE-2024-25739", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-25739" } ], "notes": [ { "category": "general", "text": "create_empty_lvol in drivers/mtd/ubi/vtbl.c in the Linux kernel through 6.7.4 can attempt to allocate zero bytes, and crash, because of a missing check for ubi-\u003eleb_size.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-25739", "url": "https://www.suse.com/security/cve/CVE-2024-25739" }, { "category": "external", "summary": "SUSE Bug 1219834 for CVE-2024-25739", "url": "https://bugzilla.suse.com/1219834" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-25739" }, { "cve": "CVE-2024-25742", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-25742" } ], "notes": [ { "category": "general", "text": "In the Linux kernel before 6.9, an untrusted hypervisor can inject virtual interrupt 29 (#VC) at any point in time and can trigger its handler. This affects AMD SEV-SNP and AMD SEV-ES.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-25742", "url": "https://www.suse.com/security/cve/CVE-2024-25742" }, { "category": "external", "summary": "SUSE Bug 1221725 for CVE-2024-25742", "url": "https://bugzilla.suse.com/1221725" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6.4, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-25742" }, { "cve": "CVE-2024-26599", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26599" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\npwm: Fix out-of-bounds access in of_pwm_single_xlate()\n\nWith args-\u003eargs_count == 2 args-\u003eargs[2] is not defined. Actually the\nflags are contained in args-\u003eargs[1].", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26599", "url": "https://www.suse.com/security/cve/CVE-2024-26599" }, { "category": "external", "summary": "SUSE Bug 1220365 for CVE-2024-26599", "url": "https://bugzilla.suse.com/1220365" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.1, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26599" }, { "cve": "CVE-2024-26600", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26600" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nphy: ti: phy-omap-usb2: Fix NULL pointer dereference for SRP\n\nIf the external phy working together with phy-omap-usb2 does not implement\nsend_srp(), we may still attempt to call it. This can happen on an idle\nEthernet gadget triggering a wakeup for example:\n\nconfigfs-gadget.g1 gadget.0: ECM Suspend\nconfigfs-gadget.g1 gadget.0: Port suspended. Triggering wakeup\n...\nUnable to handle kernel NULL pointer dereference at virtual address\n00000000 when execute\n...\nPC is at 0x0\nLR is at musb_gadget_wakeup+0x1d4/0x254 [musb_hdrc]\n...\nmusb_gadget_wakeup [musb_hdrc] from usb_gadget_wakeup+0x1c/0x3c [udc_core]\nusb_gadget_wakeup [udc_core] from eth_start_xmit+0x3b0/0x3d4 [u_ether]\neth_start_xmit [u_ether] from dev_hard_start_xmit+0x94/0x24c\ndev_hard_start_xmit from sch_direct_xmit+0x104/0x2e4\nsch_direct_xmit from __dev_queue_xmit+0x334/0xd88\n__dev_queue_xmit from arp_solicit+0xf0/0x268\narp_solicit from neigh_probe+0x54/0x7c\nneigh_probe from __neigh_event_send+0x22c/0x47c\n__neigh_event_send from neigh_resolve_output+0x14c/0x1c0\nneigh_resolve_output from ip_finish_output2+0x1c8/0x628\nip_finish_output2 from ip_send_skb+0x40/0xd8\nip_send_skb from udp_send_skb+0x124/0x340\nudp_send_skb from udp_sendmsg+0x780/0x984\nudp_sendmsg from __sys_sendto+0xd8/0x158\n__sys_sendto from ret_fast_syscall+0x0/0x58\n\nLet\u0027s fix the issue by checking for send_srp() and set_vbus() before\ncalling them. For USB peripheral only cases these both could be NULL.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26600", "url": "https://www.suse.com/security/cve/CVE-2024-26600" }, { "category": "external", "summary": "SUSE Bug 1220340 for CVE-2024-26600", "url": "https://bugzilla.suse.com/1220340" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26600" }, { "cve": "CVE-2024-26602", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26602" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nsched/membarrier: reduce the ability to hammer on sys_membarrier\n\nOn some systems, sys_membarrier can be very expensive, causing overall\nslowdowns for everything. So put a lock on the path in order to\nserialize the accesses to prevent the ability for this to be called at\ntoo high of a frequency and saturate the machine.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26602", "url": "https://www.suse.com/security/cve/CVE-2024-26602" }, { "category": "external", "summary": "SUSE Bug 1220398 for CVE-2024-26602", "url": "https://bugzilla.suse.com/1220398" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.7, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26602" }, { "cve": "CVE-2024-26612", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26612" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnetfs, fscache: Prevent Oops in fscache_put_cache()\n\nThis function dereferences \"cache\" and then checks if it\u0027s\nIS_ERR_OR_NULL(). Check first, then dereference.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26612", "url": "https://www.suse.com/security/cve/CVE-2024-26612" }, { "category": "external", "summary": "SUSE Bug 1221291 for CVE-2024-26612", "url": "https://bugzilla.suse.com/1221291" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26612" }, { "cve": "CVE-2024-26614", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26614" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ntcp: make sure init the accept_queue\u0027s spinlocks once\n\nWhen I run syz\u0027s reproduction C program locally, it causes the following\nissue:\npvqspinlock: lock 0xffff9d181cd5c660 has corrupted value 0x0!\nWARNING: CPU: 19 PID: 21160 at __pv_queued_spin_unlock_slowpath (kernel/locking/qspinlock_paravirt.h:508)\nHardware name: Red Hat KVM, BIOS 0.5.1 01/01/2011\nRIP: 0010:__pv_queued_spin_unlock_slowpath (kernel/locking/qspinlock_paravirt.h:508)\nCode: 73 56 3a ff 90 c3 cc cc cc cc 8b 05 bb 1f 48 01 85 c0 74 05 c3 cc cc cc cc 8b 17 48 89 fe 48 c7 c7\n30 20 ce 8f e8 ad 56 42 ff \u003c0f\u003e 0b c3 cc cc cc cc 0f 0b 0f 1f 40 00 90 90 90 90 90 90 90 90 90\nRSP: 0018:ffffa8d200604cb8 EFLAGS: 00010282\nRAX: 0000000000000000 RBX: 0000000000000000 RCX: ffff9d1ef60e0908\nRDX: 00000000ffffffd8 RSI: 0000000000000027 RDI: ffff9d1ef60e0900\nRBP: ffff9d181cd5c280 R08: 0000000000000000 R09: 00000000ffff7fff\nR10: ffffa8d200604b68 R11: ffffffff907dcdc8 R12: 0000000000000000\nR13: ffff9d181cd5c660 R14: ffff9d1813a3f330 R15: 0000000000001000\nFS: 00007fa110184640(0000) GS:ffff9d1ef60c0000(0000) knlGS:0000000000000000\nCS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\nCR2: 0000000020000000 CR3: 000000011f65e000 CR4: 00000000000006f0\nCall Trace:\n\u003cIRQ\u003e\n _raw_spin_unlock (kernel/locking/spinlock.c:186)\n inet_csk_reqsk_queue_add (net/ipv4/inet_connection_sock.c:1321)\n inet_csk_complete_hashdance (net/ipv4/inet_connection_sock.c:1358)\n tcp_check_req (net/ipv4/tcp_minisocks.c:868)\n tcp_v4_rcv (net/ipv4/tcp_ipv4.c:2260)\n ip_protocol_deliver_rcu (net/ipv4/ip_input.c:205)\n ip_local_deliver_finish (net/ipv4/ip_input.c:234)\n __netif_receive_skb_one_core (net/core/dev.c:5529)\n process_backlog (./include/linux/rcupdate.h:779)\n __napi_poll (net/core/dev.c:6533)\n net_rx_action (net/core/dev.c:6604)\n __do_softirq (./arch/x86/include/asm/jump_label.h:27)\n do_softirq (kernel/softirq.c:454 kernel/softirq.c:441)\n\u003c/IRQ\u003e\n\u003cTASK\u003e\n __local_bh_enable_ip (kernel/softirq.c:381)\n __dev_queue_xmit (net/core/dev.c:4374)\n ip_finish_output2 (./include/net/neighbour.h:540 net/ipv4/ip_output.c:235)\n __ip_queue_xmit (net/ipv4/ip_output.c:535)\n __tcp_transmit_skb (net/ipv4/tcp_output.c:1462)\n tcp_rcv_synsent_state_process (net/ipv4/tcp_input.c:6469)\n tcp_rcv_state_process (net/ipv4/tcp_input.c:6657)\n tcp_v4_do_rcv (net/ipv4/tcp_ipv4.c:1929)\n __release_sock (./include/net/sock.h:1121 net/core/sock.c:2968)\n release_sock (net/core/sock.c:3536)\n inet_wait_for_connect (net/ipv4/af_inet.c:609)\n __inet_stream_connect (net/ipv4/af_inet.c:702)\n inet_stream_connect (net/ipv4/af_inet.c:748)\n __sys_connect (./include/linux/file.h:45 net/socket.c:2064)\n __x64_sys_connect (net/socket.c:2073 net/socket.c:2070 net/socket.c:2070)\n do_syscall_64 (arch/x86/entry/common.c:51 arch/x86/entry/common.c:82)\n entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:129)\n RIP: 0033:0x7fa10ff05a3d\n Code: 5b 41 5c c3 66 0f 1f 84 00 00 00 00 00 f3 0f 1e fa 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89\n c2 4d 89 c8 4c 8b 4c 24 08 0f 05 \u003c48\u003e 3d 01 f0 ff ff 73 01 c3 48 8b 0d ab a3 0e 00 f7 d8 64 89 01 48\n RSP: 002b:00007fa110183de8 EFLAGS: 00000202 ORIG_RAX: 000000000000002a\n RAX: ffffffffffffffda RBX: 0000000020000054 RCX: 00007fa10ff05a3d\n RDX: 000000000000001c RSI: 0000000020000040 RDI: 0000000000000003\n RBP: 00007fa110183e20 R08: 0000000000000000 R09: 0000000000000000\n R10: 0000000000000000 R11: 0000000000000202 R12: 00007fa110184640\n R13: 0000000000000000 R14: 00007fa10fe8b060 R15: 00007fff73e23b20\n\u003c/TASK\u003e\n\nThe issue triggering process is analyzed as follows:\nThread A Thread B\ntcp_v4_rcv\t//receive ack TCP packet inet_shutdown\n tcp_check_req tcp_disconnect //disconnect sock\n ... tcp_set_state(sk, TCP_CLOSE)\n inet_csk_complete_hashdance ...\n inet_csk_reqsk_queue_add \n---truncated---", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26614", "url": "https://www.suse.com/security/cve/CVE-2024-26614" }, { "category": "external", "summary": "SUSE Bug 1221293 for CVE-2024-26614", "url": "https://bugzilla.suse.com/1221293" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.9, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26614" }, { "cve": "CVE-2024-26620", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26620" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ns390/vfio-ap: always filter entire AP matrix\n\nThe vfio_ap_mdev_filter_matrix function is called whenever a new adapter or\ndomain is assigned to the mdev. The purpose of the function is to update\nthe guest\u0027s AP configuration by filtering the matrix of adapters and\ndomains assigned to the mdev. When an adapter or domain is assigned, only\nthe APQNs associated with the APID of the new adapter or APQI of the new\ndomain are inspected. If an APQN does not reference a queue device bound to\nthe vfio_ap device driver, then it\u0027s APID will be filtered from the mdev\u0027s\nmatrix when updating the guest\u0027s AP configuration.\n\nInspecting only the APID of the new adapter or APQI of the new domain will\nresult in passing AP queues through to a guest that are not bound to the\nvfio_ap device driver under certain circumstances. Consider the following:\n\nguest\u0027s AP configuration (all also assigned to the mdev\u0027s matrix):\n14.0004\n14.0005\n14.0006\n16.0004\n16.0005\n16.0006\n\nunassign domain 4\nunbind queue 16.0005\nassign domain 4\n\nWhen domain 4 is re-assigned, since only domain 4 will be inspected, the\nAPQNs that will be examined will be:\n14.0004\n16.0004\n\nSince both of those APQNs reference queue devices that are bound to the\nvfio_ap device driver, nothing will get filtered from the mdev\u0027s matrix\nwhen updating the guest\u0027s AP configuration. Consequently, queue 16.0005\nwill get passed through despite not being bound to the driver. This\nviolates the linux device model requirement that a guest shall only be\ngiven access to devices bound to the device driver facilitating their\npass-through.\n\nTo resolve this problem, every adapter and domain assigned to the mdev will\nbe inspected when filtering the mdev\u0027s matrix.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26620", "url": "https://www.suse.com/security/cve/CVE-2024-26620" }, { "category": "external", "summary": "SUSE Bug 1221298 for CVE-2024-26620", "url": "https://bugzilla.suse.com/1221298" }, { "category": "external", "summary": "SUSE Bug 1224176 for CVE-2024-26620", "url": "https://bugzilla.suse.com/1224176" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 7.7, "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "important" } ], "title": "CVE-2024-26620" }, { "cve": "CVE-2024-26627", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26627" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: core: Move scsi_host_busy() out of host lock for waking up EH handler\n\nInside scsi_eh_wakeup(), scsi_host_busy() is called \u0026 checked with host\nlock every time for deciding if error handler kthread needs to be waken up.\n\nThis can be too heavy in case of recovery, such as:\n\n - N hardware queues\n\n - queue depth is M for each hardware queue\n\n - each scsi_host_busy() iterates over (N * M) tag/requests\n\nIf recovery is triggered in case that all requests are in-flight, each\nscsi_eh_wakeup() is strictly serialized, when scsi_eh_wakeup() is called\nfor the last in-flight request, scsi_host_busy() has been run for (N * M -\n1) times, and request has been iterated for (N*M - 1) * (N * M) times.\n\nIf both N and M are big enough, hard lockup can be triggered on acquiring\nhost lock, and it is observed on mpi3mr(128 hw queues, queue depth 8169).\n\nFix the issue by calling scsi_host_busy() outside the host lock. We don\u0027t\nneed the host lock for getting busy count because host the lock never\ncovers that.\n\n[mkp: Drop unnecessary \u0027busy\u0027 variables pointed out by Bart]", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26627", "url": "https://www.suse.com/security/cve/CVE-2024-26627" }, { "category": "external", "summary": "SUSE Bug 1221090 for CVE-2024-26627", "url": "https://bugzilla.suse.com/1221090" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26627" }, { "cve": "CVE-2024-26629", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26629" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnfsd: fix RELEASE_LOCKOWNER\n\nThe test on so_count in nfsd4_release_lockowner() is nonsense and\nharmful. Revert to using check_for_locks(), changing that to not sleep.\n\nFirst: harmful.\nAs is documented in the kdoc comment for nfsd4_release_lockowner(), the\ntest on so_count can transiently return a false positive resulting in a\nreturn of NFS4ERR_LOCKS_HELD when in fact no locks are held. This is\nclearly a protocol violation and with the Linux NFS client it can cause\nincorrect behaviour.\n\nIf RELEASE_LOCKOWNER is sent while some other thread is still\nprocessing a LOCK request which failed because, at the time that request\nwas received, the given owner held a conflicting lock, then the nfsd\nthread processing that LOCK request can hold a reference (conflock) to\nthe lock owner that causes nfsd4_release_lockowner() to return an\nincorrect error.\n\nThe Linux NFS client ignores that NFS4ERR_LOCKS_HELD error because it\nnever sends NFS4_RELEASE_LOCKOWNER without first releasing any locks, so\nit knows that the error is impossible. It assumes the lock owner was in\nfact released so it feels free to use the same lock owner identifier in\nsome later locking request.\n\nWhen it does reuse a lock owner identifier for which a previous RELEASE\nfailed, it will naturally use a lock_seqid of zero. However the server,\nwhich didn\u0027t release the lock owner, will expect a larger lock_seqid and\nso will respond with NFS4ERR_BAD_SEQID.\n\nSo clearly it is harmful to allow a false positive, which testing\nso_count allows.\n\nThe test is nonsense because ... well... it doesn\u0027t mean anything.\n\nso_count is the sum of three different counts.\n1/ the set of states listed on so_stateids\n2/ the set of active vfs locks owned by any of those states\n3/ various transient counts such as for conflicting locks.\n\nWhen it is tested against \u00272\u0027 it is clear that one of these is the\ntransient reference obtained by find_lockowner_str_locked(). It is not\nclear what the other one is expected to be.\n\nIn practice, the count is often 2 because there is precisely one state\non so_stateids. If there were more, this would fail.\n\nIn my testing I see two circumstances when RELEASE_LOCKOWNER is called.\nIn one case, CLOSE is called before RELEASE_LOCKOWNER. That results in\nall the lock states being removed, and so the lockowner being discarded\n(it is removed when there are no more references which usually happens\nwhen the lock state is discarded). When nfsd4_release_lockowner() finds\nthat the lock owner doesn\u0027t exist, it returns success.\n\nThe other case shows an so_count of \u00272\u0027 and precisely one state listed\nin so_stateid. It appears that the Linux client uses a separate lock\nowner for each file resulting in one lock state per lock owner, so this\ntest on \u00272\u0027 is safe. For another client it might not be safe.\n\nSo this patch changes check_for_locks() to use the (newish)\nfind_any_file_locked() so that it doesn\u0027t take a reference on the\nnfs4_file and so never calls nfsd_file_put(), and so never sleeps. With\nthis check is it safe to restore the use of check_for_locks() rather\nthan testing so_count against the mysterious \u00272\u0027.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26629", "url": "https://www.suse.com/security/cve/CVE-2024-26629" }, { "category": "external", "summary": "SUSE Bug 1221379 for CVE-2024-26629", "url": "https://bugzilla.suse.com/1221379" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 3.3, "baseSeverity": "LOW", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26629" }, { "cve": "CVE-2024-26642", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26642" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: nf_tables: disallow anonymous set with timeout flag\n\nAnonymous sets are never used with timeout from userspace, reject this.\nException to this rule is NFT_SET_EVAL to ensure legacy meters still work.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26642", "url": "https://www.suse.com/security/cve/CVE-2024-26642" }, { "category": "external", "summary": "SUSE Bug 1221830 for CVE-2024-26642", "url": "https://bugzilla.suse.com/1221830" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6.7, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26642" }, { "cve": "CVE-2024-26645", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26645" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ntracing: Ensure visibility when inserting an element into tracing_map\n\nRunning the following two commands in parallel on a multi-processor\nAArch64 machine can sporadically produce an unexpected warning about\nduplicate histogram entries:\n\n $ while true; do\n echo hist:key=id.syscall:val=hitcount \u003e \\\n /sys/kernel/debug/tracing/events/raw_syscalls/sys_enter/trigger\n cat /sys/kernel/debug/tracing/events/raw_syscalls/sys_enter/hist\n sleep 0.001\n done\n $ stress-ng --sysbadaddr $(nproc)\n\nThe warning looks as follows:\n\n[ 2911.172474] ------------[ cut here ]------------\n[ 2911.173111] Duplicates detected: 1\n[ 2911.173574] WARNING: CPU: 2 PID: 12247 at kernel/trace/tracing_map.c:983 tracing_map_sort_entries+0x3e0/0x408\n[ 2911.174702] Modules linked in: iscsi_ibft(E) iscsi_boot_sysfs(E) rfkill(E) af_packet(E) nls_iso8859_1(E) nls_cp437(E) vfat(E) fat(E) ena(E) tiny_power_button(E) qemu_fw_cfg(E) button(E) fuse(E) efi_pstore(E) ip_tables(E) x_tables(E) xfs(E) libcrc32c(E) aes_ce_blk(E) aes_ce_cipher(E) crct10dif_ce(E) polyval_ce(E) polyval_generic(E) ghash_ce(E) gf128mul(E) sm4_ce_gcm(E) sm4_ce_ccm(E) sm4_ce(E) sm4_ce_cipher(E) sm4(E) sm3_ce(E) sm3(E) sha3_ce(E) sha512_ce(E) sha512_arm64(E) sha2_ce(E) sha256_arm64(E) nvme(E) sha1_ce(E) nvme_core(E) nvme_auth(E) t10_pi(E) sg(E) scsi_mod(E) scsi_common(E) efivarfs(E)\n[ 2911.174738] Unloaded tainted modules: cppc_cpufreq(E):1\n[ 2911.180985] CPU: 2 PID: 12247 Comm: cat Kdump: loaded Tainted: G E 6.7.0-default #2 1b58bbb22c97e4399dc09f92d309344f69c44a01\n[ 2911.182398] Hardware name: Amazon EC2 c7g.8xlarge/, BIOS 1.0 11/1/2018\n[ 2911.183208] pstate: 61400005 (nZCv daif +PAN -UAO -TCO +DIT -SSBS BTYPE=--)\n[ 2911.184038] pc : tracing_map_sort_entries+0x3e0/0x408\n[ 2911.184667] lr : tracing_map_sort_entries+0x3e0/0x408\n[ 2911.185310] sp : ffff8000a1513900\n[ 2911.185750] x29: ffff8000a1513900 x28: ffff0003f272fe80 x27: 0000000000000001\n[ 2911.186600] x26: ffff0003f272fe80 x25: 0000000000000030 x24: 0000000000000008\n[ 2911.187458] x23: ffff0003c5788000 x22: ffff0003c16710c8 x21: ffff80008017f180\n[ 2911.188310] x20: ffff80008017f000 x19: ffff80008017f180 x18: ffffffffffffffff\n[ 2911.189160] x17: 0000000000000000 x16: 0000000000000000 x15: ffff8000a15134b8\n[ 2911.190015] x14: 0000000000000000 x13: 205d373432323154 x12: 5b5d313131333731\n[ 2911.190844] x11: 00000000fffeffff x10: 00000000fffeffff x9 : ffffd1b78274a13c\n[ 2911.191716] x8 : 000000000017ffe8 x7 : c0000000fffeffff x6 : 000000000057ffa8\n[ 2911.192554] x5 : ffff0012f6c24ec0 x4 : 0000000000000000 x3 : ffff2e5b72b5d000\n[ 2911.193404] x2 : 0000000000000000 x1 : 0000000000000000 x0 : ffff0003ff254480\n[ 2911.194259] Call trace:\n[ 2911.194626] tracing_map_sort_entries+0x3e0/0x408\n[ 2911.195220] hist_show+0x124/0x800\n[ 2911.195692] seq_read_iter+0x1d4/0x4e8\n[ 2911.196193] seq_read+0xe8/0x138\n[ 2911.196638] vfs_read+0xc8/0x300\n[ 2911.197078] ksys_read+0x70/0x108\n[ 2911.197534] __arm64_sys_read+0x24/0x38\n[ 2911.198046] invoke_syscall+0x78/0x108\n[ 2911.198553] el0_svc_common.constprop.0+0xd0/0xf8\n[ 2911.199157] do_el0_svc+0x28/0x40\n[ 2911.199613] el0_svc+0x40/0x178\n[ 2911.200048] el0t_64_sync_handler+0x13c/0x158\n[ 2911.200621] el0t_64_sync+0x1a8/0x1b0\n[ 2911.201115] ---[ end trace 0000000000000000 ]---\n\nThe problem appears to be caused by CPU reordering of writes issued from\n__tracing_map_insert().\n\nThe check for the presence of an element with a given key in this\nfunction is:\n\n val = READ_ONCE(entry-\u003eval);\n if (val \u0026\u0026 keys_match(key, val-\u003ekey, map-\u003ekey_size)) ...\n\nThe write of a new entry is:\n\n elt = get_free_elt(map);\n memcpy(elt-\u003ekey, key, map-\u003ekey_size);\n entry-\u003eval = elt;\n\nThe \"memcpy(elt-\u003ekey, key, map-\u003ekey_size);\" and \"entry-\u003eval = elt;\"\nstores may become visible in the reversed order on another CPU. This\nsecond CPU might then incorrectly determine that a new key doesn\u0027t match\nan already present val-\u003ekey and subse\n---truncated---", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26645", "url": "https://www.suse.com/security/cve/CVE-2024-26645" }, { "category": "external", "summary": "SUSE Bug 1222056 for CVE-2024-26645", "url": "https://bugzilla.suse.com/1222056" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26645" }, { "cve": "CVE-2024-26646", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26646" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nthermal: intel: hfi: Add syscore callbacks for system-wide PM\n\nThe kernel allocates a memory buffer and provides its location to the\nhardware, which uses it to update the HFI table. This allocation occurs\nduring boot and remains constant throughout runtime.\n\nWhen resuming from hibernation, the restore kernel allocates a second\nmemory buffer and reprograms the HFI hardware with the new location as\npart of a normal boot. The location of the second memory buffer may\ndiffer from the one allocated by the image kernel.\n\nWhen the restore kernel transfers control to the image kernel, its HFI\nbuffer becomes invalid, potentially leading to memory corruption if the\nhardware writes to it (the hardware continues to use the buffer from the\nrestore kernel).\n\nIt is also possible that the hardware \"forgets\" the address of the memory\nbuffer when resuming from \"deep\" suspend. Memory corruption may also occur\nin such a scenario.\n\nTo prevent the described memory corruption, disable HFI when preparing to\nsuspend or hibernate. Enable it when resuming.\n\nAdd syscore callbacks to handle the package of the boot CPU (packages of\nnon-boot CPUs are handled via CPU offline). Syscore ops always run on the\nboot CPU. Additionally, HFI only needs to be disabled during \"deep\" suspend\nand hibernation. Syscore ops only run in these cases.\n\n[ rjw: Comment adjustment, subject and changelog edits ]", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26646", "url": "https://www.suse.com/security/cve/CVE-2024-26646" }, { "category": "external", "summary": "SUSE Bug 1222070 for CVE-2024-26646", "url": "https://bugzilla.suse.com/1222070" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.9, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26646" }, { "cve": "CVE-2024-26651", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26651" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nsr9800: Add check for usbnet_get_endpoints\n\nAdd check for usbnet_get_endpoints() and return the error if it fails\nin order to transfer the error.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26651", "url": "https://www.suse.com/security/cve/CVE-2024-26651" }, { "category": "external", "summary": "SUSE Bug 1221337 for CVE-2024-26651", "url": "https://bugzilla.suse.com/1221337" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6.2, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26651" }, { "cve": "CVE-2024-26654", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26654" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: sh: aica: reorder cleanup operations to avoid UAF bugs\n\nThe dreamcastcard-\u003etimer could schedule the spu_dma_work and the\nspu_dma_work could also arm the dreamcastcard-\u003etimer.\n\nWhen the snd_pcm_substream is closing, the aica_channel will be\ndeallocated. But it could still be dereferenced in the worker\nthread. The reason is that del_timer() will return directly\nregardless of whether the timer handler is running or not and\nthe worker could be rescheduled in the timer handler. As a result,\nthe UAF bug will happen. The racy situation is shown below:\n\n (Thread 1) | (Thread 2)\nsnd_aicapcm_pcm_close() |\n ... | run_spu_dma() //worker\n | mod_timer()\n flush_work() |\n del_timer() | aica_period_elapsed() //timer\n kfree(dreamcastcard-\u003echannel) | schedule_work()\n | run_spu_dma() //worker\n ... | dreamcastcard-\u003echannel-\u003e //USE\n\nIn order to mitigate this bug and other possible corner cases,\ncall mod_timer() conditionally in run_spu_dma(), then implement\nPCM sync_stop op to cancel both the timer and worker. The sync_stop\nop will be called from PCM core appropriately when needed.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26654", "url": "https://www.suse.com/security/cve/CVE-2024-26654" }, { "category": "external", "summary": "SUSE Bug 1222304 for CVE-2024-26654", "url": "https://bugzilla.suse.com/1222304" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26654" }, { "cve": "CVE-2024-26659", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26659" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nxhci: handle isoc Babble and Buffer Overrun events properly\n\nxHCI 4.9 explicitly forbids assuming that the xHC has released its\nownership of a multi-TRB TD when it reports an error on one of the\nearly TRBs. Yet the driver makes such assumption and releases the TD,\nallowing the remaining TRBs to be freed or overwritten by new TDs.\n\nThe xHC should also report completion of the final TRB due to its IOC\nflag being set by us, regardless of prior errors. This event cannot\nbe recognized if the TD has already been freed earlier, resulting in\n\"Transfer event TRB DMA ptr not part of current TD\" error message.\n\nFix this by reusing the logic for processing isoc Transaction Errors.\nThis also handles hosts which fail to report the final completion.\n\nFix transfer length reporting on Babble errors. They may be caused by\ndevice malfunction, no guarantee that the buffer has been filled.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26659", "url": "https://www.suse.com/security/cve/CVE-2024-26659" }, { "category": "external", "summary": "SUSE Bug 1222317 for CVE-2024-26659", "url": "https://bugzilla.suse.com/1222317" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26659" }, { "cve": "CVE-2024-26660", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26660" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/display: Implement bounds check for stream encoder creation in DCN301\n\n\u0027stream_enc_regs\u0027 array is an array of dcn10_stream_enc_registers\nstructures. The array is initialized with four elements, corresponding\nto the four calls to stream_enc_regs() in the array initializer. This\nmeans that valid indices for this array are 0, 1, 2, and 3.\n\nThe error message \u0027stream_enc_regs\u0027 4 \u003c= 5 below, is indicating that\nthere is an attempt to access this array with an index of 5, which is\nout of bounds. This could lead to undefined behavior\n\nHere, eng_id is used as an index to access the stream_enc_regs array. If\neng_id is 5, this would result in an out-of-bounds access on the\nstream_enc_regs array.\n\nThus fixing Buffer overflow error in dcn301_stream_encoder_create\nreported by Smatch:\ndrivers/gpu/drm/amd/amdgpu/../display/dc/resource/dcn301/dcn301_resource.c:1011 dcn301_stream_encoder_create() error: buffer overflow \u0027stream_enc_regs\u0027 4 \u003c= 5", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26660", "url": "https://www.suse.com/security/cve/CVE-2024-26660" }, { "category": "external", "summary": "SUSE Bug 1222266 for CVE-2024-26660", "url": "https://bugzilla.suse.com/1222266" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26660" }, { "cve": "CVE-2024-26664", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26664" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nhwmon: (coretemp) Fix out-of-bounds memory access\n\nFix a bug that pdata-\u003ecpu_map[] is set before out-of-bounds check.\nThe problem might be triggered on systems with more than 128 cores per\npackage.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26664", "url": "https://www.suse.com/security/cve/CVE-2024-26664" }, { "category": "external", "summary": "SUSE Bug 1222355 for CVE-2024-26664", "url": "https://bugzilla.suse.com/1222355" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26664" }, { "cve": "CVE-2024-26667", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26667" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/msm/dpu: check for valid hw_pp in dpu_encoder_helper_phys_cleanup\n\nThe commit 8b45a26f2ba9 (\"drm/msm/dpu: reserve cdm blocks for writeback\nin case of YUV output\") introduced a smatch warning about another\nconditional block in dpu_encoder_helper_phys_cleanup() which had assumed\nhw_pp will always be valid which may not necessarily be true.\n\nLets fix the other conditional block by making sure hw_pp is valid\nbefore dereferencing it.\n\nPatchwork: https://patchwork.freedesktop.org/patch/574878/", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26667", "url": "https://www.suse.com/security/cve/CVE-2024-26667" }, { "category": "external", "summary": "SUSE Bug 1222331 for CVE-2024-26667", "url": "https://bugzilla.suse.com/1222331" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26667" }, { "cve": "CVE-2024-26670", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26670" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\narm64: entry: fix ARM64_WORKAROUND_SPECULATIVE_UNPRIV_LOAD\n\nCurrently the ARM64_WORKAROUND_SPECULATIVE_UNPRIV_LOAD workaround isn\u0027t\nquite right, as it is supposed to be applied after the last explicit\nmemory access, but is immediately followed by an LDR.\n\nThe ARM64_WORKAROUND_SPECULATIVE_UNPRIV_LOAD workaround is used to\nhandle Cortex-A520 erratum 2966298 and Cortex-A510 erratum 3117295,\nwhich are described in:\n\n* https://developer.arm.com/documentation/SDEN2444153/0600/?lang=en\n* https://developer.arm.com/documentation/SDEN1873361/1600/?lang=en\n\nIn both cases the workaround is described as:\n\n| If pagetable isolation is disabled, the context switch logic in the\n| kernel can be updated to execute the following sequence on affected\n| cores before exiting to EL0, and after all explicit memory accesses:\n|\n| 1. A non-shareable TLBI to any context and/or address, including\n| unused contexts or addresses, such as a `TLBI VALE1 Xzr`.\n|\n| 2. A DSB NSH to guarantee completion of the TLBI.\n\nThe important part being that the TLBI+DSB must be placed \"after all\nexplicit memory accesses\".\n\nUnfortunately, as-implemented, the TLBI+DSB is immediately followed by\nan LDR, as we have:\n\n| alternative_if ARM64_WORKAROUND_SPECULATIVE_UNPRIV_LOAD\n| \ttlbi\tvale1, xzr\n| \tdsb\tnsh\n| alternative_else_nop_endif\n| alternative_if_not ARM64_UNMAP_KERNEL_AT_EL0\n| \tldr\tlr, [sp, #S_LR]\n| \tadd\tsp, sp, #PT_REGS_SIZE\t\t// restore sp\n| \teret\n| alternative_else_nop_endif\n|\n| [ ... KPTI exception return path ... ]\n\nThis patch fixes this by reworking the logic to place the TLBI+DSB\nimmediately before the ERET, after all explicit memory accesses.\n\nThe ERET is currently in a separate alternative block, and alternatives\ncannot be nested. To account for this, the alternative block for\nARM64_UNMAP_KERNEL_AT_EL0 is replaced with a single alternative branch\nto skip the KPTI logic, with the new shape of the logic being:\n\n| alternative_insn \"b .L_skip_tramp_exit_\\@\", nop, ARM64_UNMAP_KERNEL_AT_EL0\n| \t[ ... KPTI exception return path ... ]\n| .L_skip_tramp_exit_\\@:\n|\n| \tldr\tlr, [sp, #S_LR]\n| \tadd\tsp, sp, #PT_REGS_SIZE\t\t// restore sp\n|\n| alternative_if ARM64_WORKAROUND_SPECULATIVE_UNPRIV_LOAD\n| \ttlbi\tvale1, xzr\n| \tdsb\tnsh\n| alternative_else_nop_endif\n| \teret\n\nThe new structure means that the workaround is only applied when KPTI is\nnot in use; this is fine as noted in the documented implications of the\nerratum:\n\n| Pagetable isolation between EL0 and higher level ELs prevents the\n| issue from occurring.\n\n... and as per the workaround description quoted above, the workaround\nis only necessary \"If pagetable isolation is disabled\".", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26670", "url": "https://www.suse.com/security/cve/CVE-2024-26670" }, { "category": "external", "summary": "SUSE Bug 1222356 for CVE-2024-26670", "url": "https://bugzilla.suse.com/1222356" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26670" }, { "cve": "CVE-2024-26680", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26680" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: atlantic: Fix DMA mapping for PTP hwts ring\n\nFunction aq_ring_hwts_rx_alloc() maps extra AQ_CFG_RXDS_DEF bytes\nfor PTP HWTS ring but then generic aq_ring_free() does not take this\ninto account.\nCreate and use a specific function to free HWTS ring to fix this\nissue.\n\nTrace:\n[ 215.351607] ------------[ cut here ]------------\n[ 215.351612] DMA-API: atlantic 0000:4b:00.0: device driver frees DMA memory with different size [device address=0x00000000fbdd0000] [map size=34816 bytes] [unmap size=32768 bytes]\n[ 215.351635] WARNING: CPU: 33 PID: 10759 at kernel/dma/debug.c:988 check_unmap+0xa6f/0x2360\n...\n[ 215.581176] Call Trace:\n[ 215.583632] \u003cTASK\u003e\n[ 215.585745] ? show_trace_log_lvl+0x1c4/0x2df\n[ 215.590114] ? show_trace_log_lvl+0x1c4/0x2df\n[ 215.594497] ? debug_dma_free_coherent+0x196/0x210\n[ 215.599305] ? check_unmap+0xa6f/0x2360\n[ 215.603147] ? __warn+0xca/0x1d0\n[ 215.606391] ? check_unmap+0xa6f/0x2360\n[ 215.610237] ? report_bug+0x1ef/0x370\n[ 215.613921] ? handle_bug+0x3c/0x70\n[ 215.617423] ? exc_invalid_op+0x14/0x50\n[ 215.621269] ? asm_exc_invalid_op+0x16/0x20\n[ 215.625480] ? check_unmap+0xa6f/0x2360\n[ 215.629331] ? mark_lock.part.0+0xca/0xa40\n[ 215.633445] debug_dma_free_coherent+0x196/0x210\n[ 215.638079] ? __pfx_debug_dma_free_coherent+0x10/0x10\n[ 215.643242] ? slab_free_freelist_hook+0x11d/0x1d0\n[ 215.648060] dma_free_attrs+0x6d/0x130\n[ 215.651834] aq_ring_free+0x193/0x290 [atlantic]\n[ 215.656487] aq_ptp_ring_free+0x67/0x110 [atlantic]\n...\n[ 216.127540] ---[ end trace 6467e5964dd2640b ]---\n[ 216.132160] DMA-API: Mapped at:\n[ 216.132162] debug_dma_alloc_coherent+0x66/0x2f0\n[ 216.132165] dma_alloc_attrs+0xf5/0x1b0\n[ 216.132168] aq_ring_hwts_rx_alloc+0x150/0x1f0 [atlantic]\n[ 216.132193] aq_ptp_ring_alloc+0x1bb/0x540 [atlantic]\n[ 216.132213] aq_nic_init+0x4a1/0x760 [atlantic]", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26680", "url": "https://www.suse.com/security/cve/CVE-2024-26680" }, { "category": "external", "summary": "SUSE Bug 1222427 for CVE-2024-26680", "url": "https://bugzilla.suse.com/1222427" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26680" }, { "cve": "CVE-2024-26681", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26681" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnetdevsim: avoid potential loop in nsim_dev_trap_report_work()\n\nMany syzbot reports include the following trace [1]\n\nIf nsim_dev_trap_report_work() can not grab the mutex,\nit should rearm itself at least one jiffie later.\n\n[1]\nSending NMI from CPU 1 to CPUs 0:\nNMI backtrace for cpu 0\nCPU: 0 PID: 32383 Comm: kworker/0:2 Not tainted 6.8.0-rc2-syzkaller-00031-g861c0981648f #0\nHardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 11/17/2023\nWorkqueue: events nsim_dev_trap_report_work\n RIP: 0010:bytes_is_nonzero mm/kasan/generic.c:89 [inline]\n RIP: 0010:memory_is_nonzero mm/kasan/generic.c:104 [inline]\n RIP: 0010:memory_is_poisoned_n mm/kasan/generic.c:129 [inline]\n RIP: 0010:memory_is_poisoned mm/kasan/generic.c:161 [inline]\n RIP: 0010:check_region_inline mm/kasan/generic.c:180 [inline]\n RIP: 0010:kasan_check_range+0x101/0x190 mm/kasan/generic.c:189\nCode: 07 49 39 d1 75 0a 45 3a 11 b8 01 00 00 00 7c 0b 44 89 c2 e8 21 ed ff ff 83 f0 01 5b 5d 41 5c c3 48 85 d2 74 4f 48 01 ea eb 09 \u003c48\u003e 83 c0 01 48 39 d0 74 41 80 38 00 74 f2 eb b6 41 bc 08 00 00 00\nRSP: 0018:ffffc90012dcf998 EFLAGS: 00000046\nRAX: fffffbfff258af1e RBX: fffffbfff258af1f RCX: ffffffff8168eda3\nRDX: fffffbfff258af1f RSI: 0000000000000004 RDI: ffffffff92c578f0\nRBP: fffffbfff258af1e R08: 0000000000000000 R09: fffffbfff258af1e\nR10: ffffffff92c578f3 R11: ffffffff8acbcbc0 R12: 0000000000000002\nR13: ffff88806db38400 R14: 1ffff920025b9f42 R15: ffffffff92c578e8\nFS: 0000000000000000(0000) GS:ffff8880b9800000(0000) knlGS:0000000000000000\nCS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\nCR2: 000000c00994e078 CR3: 000000002c250000 CR4: 00000000003506f0\nDR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000\nDR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400\nCall Trace:\n \u003cNMI\u003e\n \u003c/NMI\u003e\n \u003cTASK\u003e\n instrument_atomic_read include/linux/instrumented.h:68 [inline]\n atomic_read include/linux/atomic/atomic-instrumented.h:32 [inline]\n queued_spin_is_locked include/asm-generic/qspinlock.h:57 [inline]\n debug_spin_unlock kernel/locking/spinlock_debug.c:101 [inline]\n do_raw_spin_unlock+0x53/0x230 kernel/locking/spinlock_debug.c:141\n __raw_spin_unlock_irqrestore include/linux/spinlock_api_smp.h:150 [inline]\n _raw_spin_unlock_irqrestore+0x22/0x70 kernel/locking/spinlock.c:194\n debug_object_activate+0x349/0x540 lib/debugobjects.c:726\n debug_work_activate kernel/workqueue.c:578 [inline]\n insert_work+0x30/0x230 kernel/workqueue.c:1650\n __queue_work+0x62e/0x11d0 kernel/workqueue.c:1802\n __queue_delayed_work+0x1bf/0x270 kernel/workqueue.c:1953\n queue_delayed_work_on+0x106/0x130 kernel/workqueue.c:1989\n queue_delayed_work include/linux/workqueue.h:563 [inline]\n schedule_delayed_work include/linux/workqueue.h:677 [inline]\n nsim_dev_trap_report_work+0x9c0/0xc80 drivers/net/netdevsim/dev.c:842\n process_one_work+0x886/0x15d0 kernel/workqueue.c:2633\n process_scheduled_works kernel/workqueue.c:2706 [inline]\n worker_thread+0x8b9/0x1290 kernel/workqueue.c:2787\n kthread+0x2c6/0x3a0 kernel/kthread.c:388\n ret_from_fork+0x45/0x80 arch/x86/kernel/process.c:147\n ret_from_fork_asm+0x11/0x20 arch/x86/entry/entry_64.S:242\n \u003c/TASK\u003e", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26681", "url": "https://www.suse.com/security/cve/CVE-2024-26681" }, { "category": "external", "summary": "SUSE Bug 1222431 for CVE-2024-26681", "url": "https://bugzilla.suse.com/1222431" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26681" }, { "cve": "CVE-2024-26684", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26684" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: stmmac: xgmac: fix handling of DPP safety error for DMA channels\n\nCommit 56e58d6c8a56 (\"net: stmmac: Implement Safety Features in\nXGMAC core\") checks and reports safety errors, but leaves the\nData Path Parity Errors for each channel in DMA unhandled at all, lead to\na storm of interrupt.\nFix it by checking and clearing the DMA_DPP_Interrupt_Status register.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26684", "url": "https://www.suse.com/security/cve/CVE-2024-26684" }, { "category": "external", "summary": "SUSE Bug 1222445 for CVE-2024-26684", "url": "https://bugzilla.suse.com/1222445" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26684" }, { "cve": "CVE-2024-26685", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26685" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnilfs2: fix potential bug in end_buffer_async_write\n\nAccording to a syzbot report, end_buffer_async_write(), which handles the\ncompletion of block device writes, may detect abnormal condition of the\nbuffer async_write flag and cause a BUG_ON failure when using nilfs2.\n\nNilfs2 itself does not use end_buffer_async_write(). But, the async_write\nflag is now used as a marker by commit 7f42ec394156 (\"nilfs2: fix issue\nwith race condition of competition between segments for dirty blocks\") as\na means of resolving double list insertion of dirty blocks in\nnilfs_lookup_dirty_data_buffers() and nilfs_lookup_node_buffers() and the\nresulting crash.\n\nThis modification is safe as long as it is used for file data and b-tree\nnode blocks where the page caches are independent. However, it was\nirrelevant and redundant to also introduce async_write for segment summary\nand super root blocks that share buffers with the backing device. This\nled to the possibility that the BUG_ON check in end_buffer_async_write\nwould fail as described above, if independent writebacks of the backing\ndevice occurred in parallel.\n\nThe use of async_write for segment summary buffers has already been\nremoved in a previous change.\n\nFix this issue by removing the manipulation of the async_write flag for\nthe remaining super root block buffer.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26685", "url": "https://www.suse.com/security/cve/CVE-2024-26685" }, { "category": "external", "summary": "SUSE Bug 1222437 for CVE-2024-26685", "url": "https://bugzilla.suse.com/1222437" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26685" }, { "cve": "CVE-2024-26689", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26689" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nceph: prevent use-after-free in encode_cap_msg()\n\nIn fs/ceph/caps.c, in encode_cap_msg(), \"use after free\" error was\ncaught by KASAN at this line - \u0027ceph_buffer_get(arg-\u003exattr_buf);\u0027. This\nimplies before the refcount could be increment here, it was freed.\n\nIn same file, in \"handle_cap_grant()\" refcount is decremented by this\nline - \u0027ceph_buffer_put(ci-\u003ei_xattrs.blob);\u0027. It appears that a race\noccurred and resource was freed by the latter line before the former\nline could increment it.\n\nencode_cap_msg() is called by __send_cap() and __send_cap() is called by\nceph_check_caps() after calling __prep_cap(). __prep_cap() is where\narg-\u003exattr_buf is assigned to ci-\u003ei_xattrs.blob. This is the spot where\nthe refcount must be increased to prevent \"use after free\" error.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26689", "url": "https://www.suse.com/security/cve/CVE-2024-26689" }, { "category": "external", "summary": "SUSE Bug 1222503 for CVE-2024-26689", "url": "https://bugzilla.suse.com/1222503" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26689" }, { "cve": "CVE-2024-26695", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26695" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ncrypto: ccp - Fix null pointer dereference in __sev_platform_shutdown_locked\n\nThe SEV platform device can be shutdown with a null psp_master,\ne.g., using DEBUG_TEST_DRIVER_REMOVE. Found using KASAN:\n\n[ 137.148210] ccp 0000:23:00.1: enabling device (0000 -\u003e 0002)\n[ 137.162647] ccp 0000:23:00.1: no command queues available\n[ 137.170598] ccp 0000:23:00.1: sev enabled\n[ 137.174645] ccp 0000:23:00.1: psp enabled\n[ 137.178890] general protection fault, probably for non-canonical address 0xdffffc000000001e: 0000 [#1] PREEMPT SMP DEBUG_PAGEALLOC KASAN NOPTI\n[ 137.182693] KASAN: null-ptr-deref in range [0x00000000000000f0-0x00000000000000f7]\n[ 137.182693] CPU: 93 PID: 1 Comm: swapper/0 Not tainted 6.8.0-rc1+ #311\n[ 137.182693] RIP: 0010:__sev_platform_shutdown_locked+0x51/0x180\n[ 137.182693] Code: 08 80 3c 08 00 0f 85 0e 01 00 00 48 8b 1d 67 b6 01 08 48 b8 00 00 00 00 00 fc ff df 48 8d bb f0 00 00 00 48 89 f9 48 c1 e9 03 \u003c80\u003e 3c 01 00 0f 85 fe 00 00 00 48 8b 9b f0 00 00 00 48 85 db 74 2c\n[ 137.182693] RSP: 0018:ffffc900000cf9b0 EFLAGS: 00010216\n[ 137.182693] RAX: dffffc0000000000 RBX: 0000000000000000 RCX: 000000000000001e\n[ 137.182693] RDX: 0000000000000000 RSI: 0000000000000008 RDI: 00000000000000f0\n[ 137.182693] RBP: ffffc900000cf9c8 R08: 0000000000000000 R09: fffffbfff58f5a66\n[ 137.182693] R10: ffffc900000cf9c8 R11: ffffffffac7ad32f R12: ffff8881e5052c28\n[ 137.182693] R13: ffff8881e5052c28 R14: ffff8881758e43e8 R15: ffffffffac64abf8\n[ 137.182693] FS: 0000000000000000(0000) GS:ffff889de7000000(0000) knlGS:0000000000000000\n[ 137.182693] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\n[ 137.182693] CR2: 0000000000000000 CR3: 0000001cf7c7e000 CR4: 0000000000350ef0\n[ 137.182693] Call Trace:\n[ 137.182693] \u003cTASK\u003e\n[ 137.182693] ? show_regs+0x6c/0x80\n[ 137.182693] ? __die_body+0x24/0x70\n[ 137.182693] ? die_addr+0x4b/0x80\n[ 137.182693] ? exc_general_protection+0x126/0x230\n[ 137.182693] ? asm_exc_general_protection+0x2b/0x30\n[ 137.182693] ? __sev_platform_shutdown_locked+0x51/0x180\n[ 137.182693] sev_firmware_shutdown.isra.0+0x1e/0x80\n[ 137.182693] sev_dev_destroy+0x49/0x100\n[ 137.182693] psp_dev_destroy+0x47/0xb0\n[ 137.182693] sp_destroy+0xbb/0x240\n[ 137.182693] sp_pci_remove+0x45/0x60\n[ 137.182693] pci_device_remove+0xaa/0x1d0\n[ 137.182693] device_remove+0xc7/0x170\n[ 137.182693] really_probe+0x374/0xbe0\n[ 137.182693] ? srso_return_thunk+0x5/0x5f\n[ 137.182693] __driver_probe_device+0x199/0x460\n[ 137.182693] driver_probe_device+0x4e/0xd0\n[ 137.182693] __driver_attach+0x191/0x3d0\n[ 137.182693] ? __pfx___driver_attach+0x10/0x10\n[ 137.182693] bus_for_each_dev+0x100/0x190\n[ 137.182693] ? __pfx_bus_for_each_dev+0x10/0x10\n[ 137.182693] ? __kasan_check_read+0x15/0x20\n[ 137.182693] ? srso_return_thunk+0x5/0x5f\n[ 137.182693] ? _raw_spin_unlock+0x27/0x50\n[ 137.182693] driver_attach+0x41/0x60\n[ 137.182693] bus_add_driver+0x2a8/0x580\n[ 137.182693] driver_register+0x141/0x480\n[ 137.182693] __pci_register_driver+0x1d6/0x2a0\n[ 137.182693] ? srso_return_thunk+0x5/0x5f\n[ 137.182693] ? esrt_sysfs_init+0x1cd/0x5d0\n[ 137.182693] ? __pfx_sp_mod_init+0x10/0x10\n[ 137.182693] sp_pci_init+0x22/0x30\n[ 137.182693] sp_mod_init+0x14/0x30\n[ 137.182693] ? __pfx_sp_mod_init+0x10/0x10\n[ 137.182693] do_one_initcall+0xd1/0x470\n[ 137.182693] ? __pfx_do_one_initcall+0x10/0x10\n[ 137.182693] ? parameq+0x80/0xf0\n[ 137.182693] ? srso_return_thunk+0x5/0x5f\n[ 137.182693] ? __kmalloc+0x3b0/0x4e0\n[ 137.182693] ? kernel_init_freeable+0x92d/0x1050\n[ 137.182693] ? kasan_populate_vmalloc_pte+0x171/0x190\n[ 137.182693] ? srso_return_thunk+0x5/0x5f\n[ 137.182693] kernel_init_freeable+0xa64/0x1050\n[ 137.182693] ? __pfx_kernel_init+0x10/0x10\n[ 137.182693] kernel_init+0x24/0x160\n[ 137.182693] ? __switch_to_asm+0x3e/0x70\n[ 137.182693] ret_from_fork+0x40/0x80\n[ 137.182693] ? __pfx_kernel_init+0x1\n---truncated---", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26695", "url": "https://www.suse.com/security/cve/CVE-2024-26695" }, { "category": "external", "summary": "SUSE Bug 1222373 for CVE-2024-26695", "url": "https://bugzilla.suse.com/1222373" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26695" }, { "cve": "CVE-2024-26696", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26696" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnilfs2: fix hang in nilfs_lookup_dirty_data_buffers()\n\nSyzbot reported a hang issue in migrate_pages_batch() called by mbind()\nand nilfs_lookup_dirty_data_buffers() called in the log writer of nilfs2.\n\nWhile migrate_pages_batch() locks a folio and waits for the writeback to\ncomplete, the log writer thread that should bring the writeback to\ncompletion picks up the folio being written back in\nnilfs_lookup_dirty_data_buffers() that it calls for subsequent log\ncreation and was trying to lock the folio. Thus causing a deadlock.\n\nIn the first place, it is unexpected that folios/pages in the middle of\nwriteback will be updated and become dirty. Nilfs2 adds a checksum to\nverify the validity of the log being written and uses it for recovery at\nmount, so data changes during writeback are suppressed. Since this is\nbroken, an unclean shutdown could potentially cause recovery to fail.\n\nInvestigation revealed that the root cause is that the wait for writeback\ncompletion in nilfs_page_mkwrite() is conditional, and if the backing\ndevice does not require stable writes, data may be modified without\nwaiting.\n\nFix these issues by making nilfs_page_mkwrite() wait for writeback to\nfinish regardless of the stable write requirement of the backing device.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26696", "url": "https://www.suse.com/security/cve/CVE-2024-26696" }, { "category": "external", "summary": "SUSE Bug 1222549 for CVE-2024-26696", "url": "https://bugzilla.suse.com/1222549" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26696" }, { "cve": "CVE-2024-26697", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26697" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnilfs2: fix data corruption in dsync block recovery for small block sizes\n\nThe helper function nilfs_recovery_copy_block() of\nnilfs_recovery_dsync_blocks(), which recovers data from logs created by\ndata sync writes during a mount after an unclean shutdown, incorrectly\ncalculates the on-page offset when copying repair data to the file\u0027s page\ncache. In environments where the block size is smaller than the page\nsize, this flaw can cause data corruption and leak uninitialized memory\nbytes during the recovery process.\n\nFix these issues by correcting this byte offset calculation on the page.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26697", "url": "https://www.suse.com/security/cve/CVE-2024-26697" }, { "category": "external", "summary": "SUSE Bug 1222550 for CVE-2024-26697", "url": "https://bugzilla.suse.com/1222550" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26697" }, { "cve": "CVE-2024-26704", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26704" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\next4: fix double-free of blocks due to wrong extents moved_len\n\nIn ext4_move_extents(), moved_len is only updated when all moves are\nsuccessfully executed, and only discards orig_inode and donor_inode\npreallocations when moved_len is not zero. When the loop fails to exit\nafter successfully moving some extents, moved_len is not updated and\nremains at 0, so it does not discard the preallocations.\n\nIf the moved extents overlap with the preallocated extents, the\noverlapped extents are freed twice in ext4_mb_release_inode_pa() and\next4_process_freed_data() (as described in commit 94d7c16cbbbd (\"ext4:\nFix double-free of blocks with EXT4_IOC_MOVE_EXT\")), and bb_free is\nincremented twice. Hence when trim is executed, a zero-division bug is\ntriggered in mb_update_avg_fragment_size() because bb_free is not zero\nand bb_fragments is zero.\n\nTherefore, update move_len after each extent move to avoid the issue.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26704", "url": "https://www.suse.com/security/cve/CVE-2024-26704" }, { "category": "external", "summary": "SUSE Bug 1222422 for CVE-2024-26704", "url": "https://bugzilla.suse.com/1222422" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26704" }, { "cve": "CVE-2024-26717", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26717" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nHID: i2c-hid-of: fix NULL-deref on failed power up\n\nA while back the I2C HID implementation was split in an ACPI and OF\npart, but the new OF driver never initialises the client pointer which\nis dereferenced on power-up failures.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26717", "url": "https://www.suse.com/security/cve/CVE-2024-26717" }, { "category": "external", "summary": "SUSE Bug 1222360 for CVE-2024-26717", "url": "https://bugzilla.suse.com/1222360" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26717" }, { "cve": "CVE-2024-26718", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26718" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ndm-crypt, dm-verity: disable tasklets\n\nTasklets have an inherent problem with memory corruption. The function\ntasklet_action_common calls tasklet_trylock, then it calls the tasklet\ncallback and then it calls tasklet_unlock. If the tasklet callback frees\nthe structure that contains the tasklet or if it calls some code that may\nfree it, tasklet_unlock will write into free memory.\n\nThe commits 8e14f610159d and d9a02e016aaf try to fix it for dm-crypt, but\nit is not a sufficient fix and the data corruption can still happen [1].\nThere is no fix for dm-verity and dm-verity will write into free memory\nwith every tasklet-processed bio.\n\nThere will be atomic workqueues implemented in the kernel 6.9 [2]. They\nwill have better interface and they will not suffer from the memory\ncorruption problem.\n\nBut we need something that stops the memory corruption now and that can be\nbackported to the stable kernels. So, I\u0027m proposing this commit that\ndisables tasklets in both dm-crypt and dm-verity. This commit doesn\u0027t\nremove the tasklet support, because the tasklet code will be reused when\natomic workqueues will be implemented.\n\n[1] https://lore.kernel.org/all/d390d7ee-f142-44d3-822a-87949e14608b@suse.de/T/\n[2] https://lore.kernel.org/lkml/20240130091300.2968534-1-tj@kernel.org/", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26718", "url": "https://www.suse.com/security/cve/CVE-2024-26718" }, { "category": "external", "summary": "SUSE Bug 1222416 for CVE-2024-26718", "url": "https://bugzilla.suse.com/1222416" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26718" }, { "cve": "CVE-2024-26722", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26722" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: rt5645: Fix deadlock in rt5645_jack_detect_work()\n\nThere is a path in rt5645_jack_detect_work(), where rt5645-\u003ejd_mutex\nis left locked forever. That may lead to deadlock\nwhen rt5645_jack_detect_work() is called for the second time.\n\nFound by Linux Verification Center (linuxtesting.org) with SVACE.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26722", "url": "https://www.suse.com/security/cve/CVE-2024-26722" }, { "category": "external", "summary": "SUSE Bug 1222520 for CVE-2024-26722", "url": "https://bugzilla.suse.com/1222520" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26722" }, { "cve": "CVE-2024-26727", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26727" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nbtrfs: do not ASSERT() if the newly created subvolume already got read\n\n[BUG]\nThere is a syzbot crash, triggered by the ASSERT() during subvolume\ncreation:\n\n assertion failed: !anon_dev, in fs/btrfs/disk-io.c:1319\n ------------[ cut here ]------------\n kernel BUG at fs/btrfs/disk-io.c:1319!\n invalid opcode: 0000 [#1] PREEMPT SMP KASAN\n RIP: 0010:btrfs_get_root_ref.part.0+0x9aa/0xa60\n \u003cTASK\u003e\n btrfs_get_new_fs_root+0xd3/0xf0\n create_subvol+0xd02/0x1650\n btrfs_mksubvol+0xe95/0x12b0\n __btrfs_ioctl_snap_create+0x2f9/0x4f0\n btrfs_ioctl_snap_create+0x16b/0x200\n btrfs_ioctl+0x35f0/0x5cf0\n __x64_sys_ioctl+0x19d/0x210\n do_syscall_64+0x3f/0xe0\n entry_SYSCALL_64_after_hwframe+0x63/0x6b\n ---[ end trace 0000000000000000 ]---\n\n[CAUSE]\nDuring create_subvol(), after inserting root item for the newly created\nsubvolume, we would trigger btrfs_get_new_fs_root() to get the\nbtrfs_root of that subvolume.\n\nThe idea here is, we have preallocated an anonymous device number for\nthe subvolume, thus we can assign it to the new subvolume.\n\nBut there is really nothing preventing things like backref walk to read\nthe new subvolume.\nIf that happens before we call btrfs_get_new_fs_root(), the subvolume\nwould be read out, with a new anonymous device number assigned already.\n\nIn that case, we would trigger ASSERT(), as we really expect no one to\nread out that subvolume (which is not yet accessible from the fs).\nBut things like backref walk is still possible to trigger the read on\nthe subvolume.\n\nThus our assumption on the ASSERT() is not correct in the first place.\n\n[FIX]\nFix it by removing the ASSERT(), and just free the @anon_dev, reset it\nto 0, and continue.\n\nIf the subvolume tree is read out by something else, it should have\nalready get a new anon_dev assigned thus we only need to free the\npreallocated one.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26727", "url": "https://www.suse.com/security/cve/CVE-2024-26727" }, { "category": "external", "summary": "SUSE Bug 1222536 for CVE-2024-26727", "url": "https://bugzilla.suse.com/1222536" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26727" }, { "cve": "CVE-2024-26733", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26733" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\narp: Prevent overflow in arp_req_get().\n\nsyzkaller reported an overflown write in arp_req_get(). [0]\n\nWhen ioctl(SIOCGARP) is issued, arp_req_get() looks up an neighbour\nentry and copies neigh-\u003eha to struct arpreq.arp_ha.sa_data.\n\nThe arp_ha here is struct sockaddr, not struct sockaddr_storage, so\nthe sa_data buffer is just 14 bytes.\n\nIn the splat below, 2 bytes are overflown to the next int field,\narp_flags. We initialise the field just after the memcpy(), so it\u0027s\nnot a problem.\n\nHowever, when dev-\u003eaddr_len is greater than 22 (e.g. MAX_ADDR_LEN),\narp_netmask is overwritten, which could be set as htonl(0xFFFFFFFFUL)\nin arp_ioctl() before calling arp_req_get().\n\nTo avoid the overflow, let\u0027s limit the max length of memcpy().\n\nNote that commit b5f0de6df6dc (\"net: dev: Convert sa_data to flexible\narray in struct sockaddr\") just silenced syzkaller.\n\n[0]:\nmemcpy: detected field-spanning write (size 16) of single field \"r-\u003earp_ha.sa_data\" at net/ipv4/arp.c:1128 (size 14)\nWARNING: CPU: 0 PID: 144638 at net/ipv4/arp.c:1128 arp_req_get+0x411/0x4a0 net/ipv4/arp.c:1128\nModules linked in:\nCPU: 0 PID: 144638 Comm: syz-executor.4 Not tainted 6.1.74 #31\nHardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.16.0-debian-1.16.0-5 04/01/2014\nRIP: 0010:arp_req_get+0x411/0x4a0 net/ipv4/arp.c:1128\nCode: fd ff ff e8 41 42 de fb b9 0e 00 00 00 4c 89 fe 48 c7 c2 20 6d ab 87 48 c7 c7 80 6d ab 87 c6 05 25 af 72 04 01 e8 5f 8d ad fb \u003c0f\u003e 0b e9 6c fd ff ff e8 13 42 de fb be 03 00 00 00 4c 89 e7 e8 a6\nRSP: 0018:ffffc900050b7998 EFLAGS: 00010286\nRAX: 0000000000000000 RBX: ffff88803a815000 RCX: 0000000000000000\nRDX: 0000000000000000 RSI: ffffffff8641a44a RDI: 0000000000000001\nRBP: ffffc900050b7a98 R08: 0000000000000001 R09: 0000000000000000\nR10: 0000000000000000 R11: 203a7970636d656d R12: ffff888039c54000\nR13: 1ffff92000a16f37 R14: ffff88803a815084 R15: 0000000000000010\nFS: 00007f172bf306c0(0000) GS:ffff88805aa00000(0000) knlGS:0000000000000000\nCS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\nCR2: 00007f172b3569f0 CR3: 0000000057f12005 CR4: 0000000000770ef0\nDR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000\nDR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400\nPKRU: 55555554\nCall Trace:\n \u003cTASK\u003e\n arp_ioctl+0x33f/0x4b0 net/ipv4/arp.c:1261\n inet_ioctl+0x314/0x3a0 net/ipv4/af_inet.c:981\n sock_do_ioctl+0xdf/0x260 net/socket.c:1204\n sock_ioctl+0x3ef/0x650 net/socket.c:1321\n vfs_ioctl fs/ioctl.c:51 [inline]\n __do_sys_ioctl fs/ioctl.c:870 [inline]\n __se_sys_ioctl fs/ioctl.c:856 [inline]\n __x64_sys_ioctl+0x18e/0x220 fs/ioctl.c:856\n do_syscall_x64 arch/x86/entry/common.c:51 [inline]\n do_syscall_64+0x37/0x90 arch/x86/entry/common.c:81\n entry_SYSCALL_64_after_hwframe+0x64/0xce\nRIP: 0033:0x7f172b262b8d\nCode: 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 00 f3 0f 1e fa 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 \u003c48\u003e 3d 01 f0 ff ff 73 01 c3 48 c7 c1 b8 ff ff ff f7 d8 64 89 01 48\nRSP: 002b:00007f172bf300b8 EFLAGS: 00000246 ORIG_RAX: 0000000000000010\nRAX: ffffffffffffffda RBX: 00007f172b3abf80 RCX: 00007f172b262b8d\nRDX: 0000000020000000 RSI: 0000000000008954 RDI: 0000000000000003\nRBP: 00007f172b2d3493 R08: 0000000000000000 R09: 0000000000000000\nR10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000000\nR13: 000000000000000b R14: 00007f172b3abf80 R15: 00007f172bf10000\n \u003c/TASK\u003e", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26733", "url": "https://www.suse.com/security/cve/CVE-2024-26733" }, { "category": "external", "summary": "SUSE Bug 1222585 for CVE-2024-26733", "url": "https://bugzilla.suse.com/1222585" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26733" }, { "cve": "CVE-2024-26736", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26736" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nafs: Increase buffer size in afs_update_volume_status()\n\nThe max length of volume-\u003evid value is 20 characters.\nSo increase idbuf[] size up to 24 to avoid overflow.\n\nFound by Linux Verification Center (linuxtesting.org) with SVACE.\n\n[DH: Actually, it\u0027s 20 + NUL, so increase it to 24 and use snprintf()]", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26736", "url": "https://www.suse.com/security/cve/CVE-2024-26736" }, { "category": "external", "summary": "SUSE Bug 1222586 for CVE-2024-26736", "url": "https://bugzilla.suse.com/1222586" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26736" }, { "cve": "CVE-2024-26737", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26737" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Fix racing between bpf_timer_cancel_and_free and bpf_timer_cancel\n\nThe following race is possible between bpf_timer_cancel_and_free\nand bpf_timer_cancel. It will lead a UAF on the timer-\u003etimer.\n\nbpf_timer_cancel();\n\tspin_lock();\n\tt = timer-\u003etime;\n\tspin_unlock();\n\n\t\t\t\t\tbpf_timer_cancel_and_free();\n\t\t\t\t\t\tspin_lock();\n\t\t\t\t\t\tt = timer-\u003etimer;\n\t\t\t\t\t\ttimer-\u003etimer = NULL;\n\t\t\t\t\t\tspin_unlock();\n\t\t\t\t\t\thrtimer_cancel(\u0026t-\u003etimer);\n\t\t\t\t\t\tkfree(t);\n\n\t/* UAF on t */\n\thrtimer_cancel(\u0026t-\u003etimer);\n\nIn bpf_timer_cancel_and_free, this patch frees the timer-\u003etimer\nafter a rcu grace period. This requires a rcu_head addition\nto the \"struct bpf_hrtimer\". Another kfree(t) happens in bpf_timer_init,\nthis does not need a kfree_rcu because it is still under the\nspin_lock and timer-\u003etimer has not been visible by others yet.\n\nIn bpf_timer_cancel, rcu_read_lock() is added because this helper\ncan be used in a non rcu critical section context (e.g. from\na sleepable bpf prog). Other timer-\u003etimer usages in helpers.c\nhave been audited, bpf_timer_cancel() is the only place where\ntimer-\u003etimer is used outside of the spin_lock.\n\nAnother solution considered is to mark a t-\u003eflag in bpf_timer_cancel\nand clear it after hrtimer_cancel() is done. In bpf_timer_cancel_and_free,\nit busy waits for the flag to be cleared before kfree(t). This patch\ngoes with a straight forward solution and frees timer-\u003etimer after\na rcu grace period.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26737", "url": "https://www.suse.com/security/cve/CVE-2024-26737" }, { "category": "external", "summary": "SUSE Bug 1222557 for CVE-2024-26737", "url": "https://bugzilla.suse.com/1222557" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6.4, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26737" }, { "cve": "CVE-2024-26743", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26743" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/qedr: Fix qedr_create_user_qp error flow\n\nAvoid the following warning by making sure to free the allocated\nresources in case that qedr_init_user_queue() fail.\n\n-----------[ cut here ]-----------\nWARNING: CPU: 0 PID: 143192 at drivers/infiniband/core/rdma_core.c:874 uverbs_destroy_ufile_hw+0xcf/0xf0 [ib_uverbs]\nModules linked in: tls target_core_user uio target_core_pscsi target_core_file target_core_iblock ib_srpt ib_srp scsi_transport_srp nfsd nfs_acl rpcsec_gss_krb5 auth_rpcgss nfsv4 dns_resolver nfs lockd grace fscache netfs 8021q garp mrp stp llc ext4 mbcache jbd2 opa_vnic ib_umad ib_ipoib sunrpc rdma_ucm ib_isert iscsi_target_mod target_core_mod ib_iser libiscsi scsi_transport_iscsi rdma_cm iw_cm ib_cm hfi1 intel_rapl_msr intel_rapl_common mgag200 qedr sb_edac drm_shmem_helper rdmavt x86_pkg_temp_thermal drm_kms_helper intel_powerclamp ib_uverbs coretemp i2c_algo_bit kvm_intel dell_wmi_descriptor ipmi_ssif sparse_keymap kvm ib_core rfkill syscopyarea sysfillrect video sysimgblt irqbypass ipmi_si ipmi_devintf fb_sys_fops rapl iTCO_wdt mxm_wmi iTCO_vendor_support intel_cstate pcspkr dcdbas intel_uncore ipmi_msghandler lpc_ich acpi_power_meter mei_me mei fuse drm xfs libcrc32c qede sd_mod ahci libahci t10_pi sg crct10dif_pclmul crc32_pclmul crc32c_intel qed libata tg3\nghash_clmulni_intel megaraid_sas crc8 wmi [last unloaded: ib_srpt]\nCPU: 0 PID: 143192 Comm: fi_rdm_tagged_p Kdump: loaded Not tainted 5.14.0-408.el9.x86_64 #1\nHardware name: Dell Inc. PowerEdge R430/03XKDV, BIOS 2.14.0 01/25/2022\nRIP: 0010:uverbs_destroy_ufile_hw+0xcf/0xf0 [ib_uverbs]\nCode: 5d 41 5c 41 5d 41 5e e9 0f 26 1b dd 48 89 df e8 67 6a ff ff 49 8b 86 10 01 00 00 48 85 c0 74 9c 4c 89 e7 e8 83 c0 cb dd eb 92 \u003c0f\u003e 0b eb be 0f 0b be 04 00 00 00 48 89 df e8 8e f5 ff ff e9 6d ff\nRSP: 0018:ffffb7c6cadfbc60 EFLAGS: 00010286\nRAX: ffff8f0889ee3f60 RBX: ffff8f088c1a5200 RCX: 00000000802a0016\nRDX: 00000000802a0017 RSI: 0000000000000001 RDI: ffff8f0880042600\nRBP: 0000000000000001 R08: 0000000000000001 R09: 0000000000000000\nR10: ffff8f11fffd5000 R11: 0000000000039000 R12: ffff8f0d5b36cd80\nR13: ffff8f088c1a5250 R14: ffff8f1206d91000 R15: 0000000000000000\nFS: 0000000000000000(0000) GS:ffff8f11d7c00000(0000) knlGS:0000000000000000\nCS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\nCR2: 0000147069200e20 CR3: 00000001c7210002 CR4: 00000000001706f0\nCall Trace:\n\u003cTASK\u003e\n? show_trace_log_lvl+0x1c4/0x2df\n? show_trace_log_lvl+0x1c4/0x2df\n? ib_uverbs_close+0x1f/0xb0 [ib_uverbs]\n? uverbs_destroy_ufile_hw+0xcf/0xf0 [ib_uverbs]\n? __warn+0x81/0x110\n? uverbs_destroy_ufile_hw+0xcf/0xf0 [ib_uverbs]\n? report_bug+0x10a/0x140\n? handle_bug+0x3c/0x70\n? exc_invalid_op+0x14/0x70\n? asm_exc_invalid_op+0x16/0x20\n? uverbs_destroy_ufile_hw+0xcf/0xf0 [ib_uverbs]\nib_uverbs_close+0x1f/0xb0 [ib_uverbs]\n__fput+0x94/0x250\ntask_work_run+0x5c/0x90\ndo_exit+0x270/0x4a0\ndo_group_exit+0x2d/0x90\nget_signal+0x87c/0x8c0\narch_do_signal_or_restart+0x25/0x100\n? ib_uverbs_ioctl+0xc2/0x110 [ib_uverbs]\nexit_to_user_mode_loop+0x9c/0x130\nexit_to_user_mode_prepare+0xb6/0x100\nsyscall_exit_to_user_mode+0x12/0x40\ndo_syscall_64+0x69/0x90\n? syscall_exit_work+0x103/0x130\n? syscall_exit_to_user_mode+0x22/0x40\n? do_syscall_64+0x69/0x90\n? syscall_exit_work+0x103/0x130\n? syscall_exit_to_user_mode+0x22/0x40\n? do_syscall_64+0x69/0x90\n? do_syscall_64+0x69/0x90\n? common_interrupt+0x43/0xa0\nentry_SYSCALL_64_after_hwframe+0x72/0xdc\nRIP: 0033:0x1470abe3ec6b\nCode: Unable to access opcode bytes at RIP 0x1470abe3ec41.\nRSP: 002b:00007fff13ce9108 EFLAGS: 00000246 ORIG_RAX: 0000000000000010\nRAX: fffffffffffffffc RBX: 00007fff13ce9218 RCX: 00001470abe3ec6b\nRDX: 00007fff13ce9200 RSI: 00000000c0181b01 RDI: 0000000000000004\nRBP: 00007fff13ce91e0 R08: 0000558d9655da10 R09: 0000558d9655dd00\nR10: 00007fff13ce95c0 R11: 0000000000000246 R12: 00007fff13ce9358\nR13: 0000000000000013 R14: 0000558d9655db50 R15: 00007fff13ce9470\n\u003c/TASK\u003e\n--[ end trace 888a9b92e04c5c97 ]--", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26743", "url": "https://www.suse.com/security/cve/CVE-2024-26743" }, { "category": "external", "summary": "SUSE Bug 1222677 for CVE-2024-26743", "url": "https://bugzilla.suse.com/1222677" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 3.3, "baseSeverity": "LOW", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26743" }, { "cve": "CVE-2024-26744", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26744" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/srpt: Support specifying the srpt_service_guid parameter\n\nMake loading ib_srpt with this parameter set work. The current behavior is\nthat setting that parameter while loading the ib_srpt kernel module\ntriggers the following kernel crash:\n\nBUG: kernel NULL pointer dereference, address: 0000000000000000\nCall Trace:\n \u003cTASK\u003e\n parse_one+0x18c/0x1d0\n parse_args+0xe1/0x230\n load_module+0x8de/0xa60\n init_module_from_file+0x8b/0xd0\n idempotent_init_module+0x181/0x240\n __x64_sys_finit_module+0x5a/0xb0\n do_syscall_64+0x5f/0xe0\n entry_SYSCALL_64_after_hwframe+0x6e/0x76", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26744", "url": "https://www.suse.com/security/cve/CVE-2024-26744" }, { "category": "external", "summary": "SUSE Bug 1222449 for CVE-2024-26744", "url": "https://bugzilla.suse.com/1222449" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26744" }, { "cve": "CVE-2024-26745", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26745" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\npowerpc/pseries/iommu: IOMMU table is not initialized for kdump over SR-IOV\n\nWhen kdump kernel tries to copy dump data over SR-IOV, LPAR panics due\nto NULL pointer exception:\n\n Kernel attempted to read user page (0) - exploit attempt? (uid: 0)\n BUG: Kernel NULL pointer dereference on read at 0x00000000\n Faulting instruction address: 0xc000000020847ad4\n Oops: Kernel access of bad area, sig: 11 [#1]\n LE PAGE_SIZE=64K MMU=Radix SMP NR_CPUS=2048 NUMA pSeries\n Modules linked in: mlx5_core(+) vmx_crypto pseries_wdt papr_scm libnvdimm mlxfw tls psample sunrpc fuse overlay squashfs loop\n CPU: 12 PID: 315 Comm: systemd-udevd Not tainted 6.4.0-Test102+ #12\n Hardware name: IBM,9080-HEX POWER10 (raw) 0x800200 0xf000006 of:IBM,FW1060.00 (NH1060_008) hv:phyp pSeries\n NIP: c000000020847ad4 LR: c00000002083b2dc CTR: 00000000006cd18c\n REGS: c000000029162ca0 TRAP: 0300 Not tainted (6.4.0-Test102+)\n MSR: 800000000280b033 \u003cSF,VEC,VSX,EE,FP,ME,IR,DR,RI,LE\u003e CR: 48288244 XER: 00000008\n CFAR: c00000002083b2d8 DAR: 0000000000000000 DSISR: 40000000 IRQMASK: 1\n ...\n NIP _find_next_zero_bit+0x24/0x110\n LR bitmap_find_next_zero_area_off+0x5c/0xe0\n Call Trace:\n dev_printk_emit+0x38/0x48 (unreliable)\n iommu_area_alloc+0xc4/0x180\n iommu_range_alloc+0x1e8/0x580\n iommu_alloc+0x60/0x130\n iommu_alloc_coherent+0x158/0x2b0\n dma_iommu_alloc_coherent+0x3c/0x50\n dma_alloc_attrs+0x170/0x1f0\n mlx5_cmd_init+0xc0/0x760 [mlx5_core]\n mlx5_function_setup+0xf0/0x510 [mlx5_core]\n mlx5_init_one+0x84/0x210 [mlx5_core]\n probe_one+0x118/0x2c0 [mlx5_core]\n local_pci_probe+0x68/0x110\n pci_call_probe+0x68/0x200\n pci_device_probe+0xbc/0x1a0\n really_probe+0x104/0x540\n __driver_probe_device+0xb4/0x230\n driver_probe_device+0x54/0x130\n __driver_attach+0x158/0x2b0\n bus_for_each_dev+0xa8/0x130\n driver_attach+0x34/0x50\n bus_add_driver+0x16c/0x300\n driver_register+0xa4/0x1b0\n __pci_register_driver+0x68/0x80\n mlx5_init+0xb8/0x100 [mlx5_core]\n do_one_initcall+0x60/0x300\n do_init_module+0x7c/0x2b0\n\nAt the time of LPAR dump, before kexec hands over control to kdump\nkernel, DDWs (Dynamic DMA Windows) are scanned and added to the FDT.\nFor the SR-IOV case, default DMA window \"ibm,dma-window\" is removed from\nthe FDT and DDW added, for the device.\n\nNow, kexec hands over control to the kdump kernel.\n\nWhen the kdump kernel initializes, PCI busses are scanned and IOMMU\ngroup/tables created, in pci_dma_bus_setup_pSeriesLP(). For the SR-IOV\ncase, there is no \"ibm,dma-window\". The original commit: b1fc44eaa9ba,\nfixes the path where memory is pre-mapped (direct mapped) to the DDW.\nWhen TCEs are direct mapped, there is no need to initialize IOMMU\ntables.\n\niommu_table_setparms_lpar() only considers \"ibm,dma-window\" property\nwhen initiallizing IOMMU table. In the scenario where TCEs are\ndynamically allocated for SR-IOV, newly created IOMMU table is not\ninitialized. Later, when the device driver tries to enter TCEs for the\nSR-IOV device, NULL pointer execption is thrown from iommu_area_alloc().\n\nThe fix is to initialize the IOMMU table with DDW property stored in the\nFDT. There are 2 points to remember:\n\n\t1. For the dedicated adapter, kdump kernel would encounter both\n\t default and DDW in FDT. In this case, DDW property is used to\n\t initialize the IOMMU table.\n\n\t2. A DDW could be direct or dynamic mapped. kdump kernel would\n\t initialize IOMMU table and mark the existing DDW as\n\t \"dynamic\". This works fine since, at the time of table\n\t initialization, iommu_table_clear() makes some space in the\n\t DDW, for some predefined number of TCEs which are needed for\n\t kdump to succeed.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26745", "url": "https://www.suse.com/security/cve/CVE-2024-26745" }, { "category": "external", "summary": "SUSE Bug 1222678 for CVE-2024-26745", "url": "https://bugzilla.suse.com/1222678" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.4, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26745" }, { "cve": "CVE-2024-26747", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26747" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nusb: roles: fix NULL pointer issue when put module\u0027s reference\n\nIn current design, usb role class driver will get usb_role_switch parent\u0027s\nmodule reference after the user get usb_role_switch device and put the\nreference after the user put the usb_role_switch device. However, the\nparent device of usb_role_switch may be removed before the user put the\nusb_role_switch. If so, then, NULL pointer issue will be met when the user\nput the parent module\u0027s reference.\n\nThis will save the module pointer in structure of usb_role_switch. Then,\nwe don\u0027t need to find module by iterating long relations.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26747", "url": "https://www.suse.com/security/cve/CVE-2024-26747" }, { "category": "external", "summary": "SUSE Bug 1222609 for CVE-2024-26747", "url": "https://bugzilla.suse.com/1222609" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.3, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26747" }, { "cve": "CVE-2024-26749", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26749" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nusb: cdns3: fixed memory use after free at cdns3_gadget_ep_disable()\n\n ...\n cdns3_gadget_ep_free_request(\u0026priv_ep-\u003eendpoint, \u0026priv_req-\u003erequest);\n list_del_init(\u0026priv_req-\u003elist);\n ...\n\n\u0027priv_req\u0027 actually free at cdns3_gadget_ep_free_request(). But\nlist_del_init() use priv_req-\u003elist after it.\n\n[ 1542.642868][ T534] BUG: KFENCE: use-after-free read in __list_del_entry_valid+0x10/0xd4\n[ 1542.642868][ T534]\n[ 1542.653162][ T534] Use-after-free read at 0x000000009ed0ba99 (in kfence-#3):\n[ 1542.660311][ T534] __list_del_entry_valid+0x10/0xd4\n[ 1542.665375][ T534] cdns3_gadget_ep_disable+0x1f8/0x388 [cdns3]\n[ 1542.671571][ T534] usb_ep_disable+0x44/0xe4\n[ 1542.675948][ T534] ffs_func_eps_disable+0x64/0xc8\n[ 1542.680839][ T534] ffs_func_set_alt+0x74/0x368\n[ 1542.685478][ T534] ffs_func_disable+0x18/0x28\n\nMove list_del_init() before cdns3_gadget_ep_free_request() to resolve this\nproblem.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26749", "url": "https://www.suse.com/security/cve/CVE-2024-26749" }, { "category": "external", "summary": "SUSE Bug 1222680 for CVE-2024-26749", "url": "https://bugzilla.suse.com/1222680" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26749" }, { "cve": "CVE-2024-26751", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26751" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nARM: ep93xx: Add terminator to gpiod_lookup_table\n\nWithout the terminator, if a con_id is passed to gpio_find() that\ndoes not exist in the lookup table the function will not stop looping\ncorrectly, and eventually cause an oops.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26751", "url": "https://www.suse.com/security/cve/CVE-2024-26751" }, { "category": "external", "summary": "SUSE Bug 1222724 for CVE-2024-26751", "url": "https://bugzilla.suse.com/1222724" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 3.3, "baseSeverity": "LOW", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26751" }, { "cve": "CVE-2024-26754", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26754" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ngtp: fix use-after-free and null-ptr-deref in gtp_genl_dump_pdp()\n\nThe gtp_net_ops pernet operations structure for the subsystem must be\nregistered before registering the generic netlink family.\n\nSyzkaller hit \u0027general protection fault in gtp_genl_dump_pdp\u0027 bug:\n\ngeneral protection fault, probably for non-canonical address\n0xdffffc0000000002: 0000 [#1] PREEMPT SMP KASAN NOPTI\nKASAN: null-ptr-deref in range [0x0000000000000010-0x0000000000000017]\nCPU: 1 PID: 5826 Comm: gtp Not tainted 6.8.0-rc3-std-def-alt1 #1\nHardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.0-alt1 04/01/2014\nRIP: 0010:gtp_genl_dump_pdp+0x1be/0x800 [gtp]\nCode: c6 89 c6 e8 64 e9 86 df 58 45 85 f6 0f 85 4e 04 00 00 e8 c5 ee 86\n df 48 8b 54 24 18 48 b8 00 00 00 00 00 fc ff df 48 c1 ea 03 \u003c80\u003e\n 3c 02 00 0f 85 de 05 00 00 48 8b 44 24 18 4c 8b 30 4c 39 f0 74\nRSP: 0018:ffff888014107220 EFLAGS: 00010202\nRAX: dffffc0000000000 RBX: 0000000000000000 RCX: 0000000000000000\nRDX: 0000000000000002 RSI: 0000000000000000 RDI: 0000000000000000\nRBP: 0000000000000000 R08: 0000000000000000 R09: 0000000000000000\nR10: 0000000000000000 R11: 0000000000000000 R12: 0000000000000000\nR13: ffff88800fcda588 R14: 0000000000000001 R15: 0000000000000000\nFS: 00007f1be4eb05c0(0000) GS:ffff88806ce80000(0000) knlGS:0000000000000000\nCS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\nCR2: 00007f1be4e766cf CR3: 000000000c33e000 CR4: 0000000000750ef0\nPKRU: 55555554\nCall Trace:\n \u003cTASK\u003e\n ? show_regs+0x90/0xa0\n ? die_addr+0x50/0xd0\n ? exc_general_protection+0x148/0x220\n ? asm_exc_general_protection+0x22/0x30\n ? gtp_genl_dump_pdp+0x1be/0x800 [gtp]\n ? __alloc_skb+0x1dd/0x350\n ? __pfx___alloc_skb+0x10/0x10\n genl_dumpit+0x11d/0x230\n netlink_dump+0x5b9/0xce0\n ? lockdep_hardirqs_on_prepare+0x253/0x430\n ? __pfx_netlink_dump+0x10/0x10\n ? kasan_save_track+0x10/0x40\n ? __kasan_kmalloc+0x9b/0xa0\n ? genl_start+0x675/0x970\n __netlink_dump_start+0x6fc/0x9f0\n genl_family_rcv_msg_dumpit+0x1bb/0x2d0\n ? __pfx_genl_family_rcv_msg_dumpit+0x10/0x10\n ? genl_op_from_small+0x2a/0x440\n ? cap_capable+0x1d0/0x240\n ? __pfx_genl_start+0x10/0x10\n ? __pfx_genl_dumpit+0x10/0x10\n ? __pfx_genl_done+0x10/0x10\n ? security_capable+0x9d/0xe0", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26754", "url": "https://www.suse.com/security/cve/CVE-2024-26754" }, { "category": "external", "summary": "SUSE Bug 1222632 for CVE-2024-26754", "url": "https://bugzilla.suse.com/1222632" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26754" }, { "cve": "CVE-2024-26760", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26760" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: target: pscsi: Fix bio_put() for error case\n\nAs of commit 066ff571011d (\"block: turn bio_kmalloc into a simple kmalloc\nwrapper\"), a bio allocated by bio_kmalloc() must be freed by bio_uninit()\nand kfree(). That is not done properly for the error case, hitting WARN and\nNULL pointer dereference in bio_free().", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26760", "url": "https://www.suse.com/security/cve/CVE-2024-26760" }, { "category": "external", "summary": "SUSE Bug 1222596 for CVE-2024-26760", "url": "https://bugzilla.suse.com/1222596" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26760" }, { "cve": "CVE-2024-26763", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26763" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ndm-crypt: don\u0027t modify the data when using authenticated encryption\n\nIt was said that authenticated encryption could produce invalid tag when\nthe data that is being encrypted is modified [1]. So, fix this problem by\ncopying the data into the clone bio first and then encrypt them inside the\nclone bio.\n\nThis may reduce performance, but it is needed to prevent the user from\ncorrupting the device by writing data with O_DIRECT and modifying them at\nthe same time.\n\n[1] https://lore.kernel.org/all/20240207004723.GA35324@sol.localdomain/T/", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26763", "url": "https://www.suse.com/security/cve/CVE-2024-26763" }, { "category": "external", "summary": "SUSE Bug 1222720 for CVE-2024-26763", "url": "https://bugzilla.suse.com/1222720" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26763" }, { "cve": "CVE-2024-26766", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26766" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nIB/hfi1: Fix sdma.h tx-\u003enum_descs off-by-one error\n\nUnfortunately the commit `fd8958efe877` introduced another error\ncausing the `descs` array to overflow. This reults in further crashes\neasily reproducible by `sendmsg` system call.\n\n[ 1080.836473] general protection fault, probably for non-canonical address 0x400300015528b00a: 0000 [#1] PREEMPT SMP PTI\n[ 1080.869326] RIP: 0010:hfi1_ipoib_build_ib_tx_headers.constprop.0+0xe1/0x2b0 [hfi1]\n--\n[ 1080.974535] Call Trace:\n[ 1080.976990] \u003cTASK\u003e\n[ 1081.021929] hfi1_ipoib_send_dma_common+0x7a/0x2e0 [hfi1]\n[ 1081.027364] hfi1_ipoib_send_dma_list+0x62/0x270 [hfi1]\n[ 1081.032633] hfi1_ipoib_send+0x112/0x300 [hfi1]\n[ 1081.042001] ipoib_start_xmit+0x2a9/0x2d0 [ib_ipoib]\n[ 1081.046978] dev_hard_start_xmit+0xc4/0x210\n--\n[ 1081.148347] __sys_sendmsg+0x59/0xa0\n\ncrash\u003e ipoib_txreq 0xffff9cfeba229f00\nstruct ipoib_txreq {\n txreq = {\n list = {\n next = 0xffff9cfeba229f00,\n prev = 0xffff9cfeba229f00\n },\n descp = 0xffff9cfeba229f40,\n coalesce_buf = 0x0,\n wait = 0xffff9cfea4e69a48,\n complete = 0xffffffffc0fe0760 \u003chfi1_ipoib_sdma_complete\u003e,\n packet_len = 0x46d,\n tlen = 0x0,\n num_desc = 0x0,\n desc_limit = 0x6,\n next_descq_idx = 0x45c,\n coalesce_idx = 0x0,\n flags = 0x0,\n descs = {{\n qw = {0x8024000120dffb00, 0x4} # SDMA_DESC0_FIRST_DESC_FLAG (bit 63)\n }, {\n qw = { 0x3800014231b108, 0x4}\n }, {\n qw = { 0x310000e4ee0fcf0, 0x8}\n }, {\n qw = { 0x3000012e9f8000, 0x8}\n }, {\n qw = { 0x59000dfb9d0000, 0x8}\n }, {\n qw = { 0x78000e02e40000, 0x8}\n }}\n },\n sdma_hdr = 0x400300015528b000, \u003c\u003c\u003c invalid pointer in the tx request structure\n sdma_status = 0x0, SDMA_DESC0_LAST_DESC_FLAG (bit 62)\n complete = 0x0,\n priv = 0x0,\n txq = 0xffff9cfea4e69880,\n skb = 0xffff9d099809f400\n}\n\nIf an SDMA send consists of exactly 6 descriptors and requires dword\npadding (in the 7th descriptor), the sdma_txreq descriptor array is not\nproperly expanded and the packet will overflow into the container\nstructure. This results in a panic when the send completion runs. The\nexact panic varies depending on what elements of the container structure\nget corrupted. The fix is to use the correct expression in\n_pad_sdma_tx_descs() to test the need to expand the descriptor array.\n\nWith this patch the crashes are no longer reproducible and the machine is\nstable.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26766", "url": "https://www.suse.com/security/cve/CVE-2024-26766" }, { "category": "external", "summary": "SUSE Bug 1222726 for CVE-2024-26766", "url": "https://bugzilla.suse.com/1222726" }, { "category": "external", "summary": "SUSE Bug 1222882 for CVE-2024-26766", "url": "https://bugzilla.suse.com/1222882" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 7.8, "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "important" } ], "title": "CVE-2024-26766" }, { "cve": "CVE-2024-26769", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26769" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnvmet-fc: avoid deadlock on delete association path\n\nWhen deleting an association the shutdown path is deadlocking because we\ntry to flush the nvmet_wq nested. Avoid this by deadlock by deferring\nthe put work into its own work item.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26769", "url": "https://www.suse.com/security/cve/CVE-2024-26769" }, { "category": "external", "summary": "SUSE Bug 1222727 for CVE-2024-26769", "url": "https://bugzilla.suse.com/1222727" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26769" }, { "cve": "CVE-2024-26771", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26771" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ndmaengine: ti: edma: Add some null pointer checks to the edma_probe\n\ndevm_kasprintf() returns a pointer to dynamically allocated memory\nwhich can be NULL upon failure. Ensure the allocation was successful\nby checking the pointer validity.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26771", "url": "https://www.suse.com/security/cve/CVE-2024-26771" }, { "category": "external", "summary": "SUSE Bug 1222610 for CVE-2024-26771", "url": "https://bugzilla.suse.com/1222610" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26771" }, { "cve": "CVE-2024-26776", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26776" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nspi: hisi-sfc-v3xx: Return IRQ_NONE if no interrupts were detected\n\nReturn IRQ_NONE from the interrupt handler when no interrupt was\ndetected. Because an empty interrupt will cause a null pointer error:\n\n Unable to handle kernel NULL pointer dereference at virtual\n address 0000000000000008\n Call trace:\n complete+0x54/0x100\n hisi_sfc_v3xx_isr+0x2c/0x40 [spi_hisi_sfc_v3xx]\n __handle_irq_event_percpu+0x64/0x1e0\n handle_irq_event+0x7c/0x1cc", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26776", "url": "https://www.suse.com/security/cve/CVE-2024-26776" }, { "category": "external", "summary": "SUSE Bug 1222764 for CVE-2024-26776", "url": "https://bugzilla.suse.com/1222764" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26776" }, { "cve": "CVE-2024-26779", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26779" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: mac80211: fix race condition on enabling fast-xmit\n\nfast-xmit must only be enabled after the sta has been uploaded to the driver,\notherwise it could end up passing the not-yet-uploaded sta via drv_tx calls\nto the driver, leading to potential crashes because of uninitialized drv_priv\ndata.\nAdd a missing sta-\u003euploaded check and re-check fast xmit after inserting a sta.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26779", "url": "https://www.suse.com/security/cve/CVE-2024-26779" }, { "category": "external", "summary": "SUSE Bug 1222772 for CVE-2024-26779", "url": "https://bugzilla.suse.com/1222772" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26779" }, { "cve": "CVE-2024-26787", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26787" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nmmc: mmci: stm32: fix DMA API overlapping mappings warning\n\nTurning on CONFIG_DMA_API_DEBUG_SG results in the following warning:\n\nDMA-API: mmci-pl18x 48220000.mmc: cacheline tracking EEXIST,\noverlapping mappings aren\u0027t supported\nWARNING: CPU: 1 PID: 51 at kernel/dma/debug.c:568\nadd_dma_entry+0x234/0x2f4\nModules linked in:\nCPU: 1 PID: 51 Comm: kworker/1:2 Not tainted 6.1.28 #1\nHardware name: STMicroelectronics STM32MP257F-EV1 Evaluation Board (DT)\nWorkqueue: events_freezable mmc_rescan\nCall trace:\nadd_dma_entry+0x234/0x2f4\ndebug_dma_map_sg+0x198/0x350\n__dma_map_sg_attrs+0xa0/0x110\ndma_map_sg_attrs+0x10/0x2c\nsdmmc_idma_prep_data+0x80/0xc0\nmmci_prep_data+0x38/0x84\nmmci_start_data+0x108/0x2dc\nmmci_request+0xe4/0x190\n__mmc_start_request+0x68/0x140\nmmc_start_request+0x94/0xc0\nmmc_wait_for_req+0x70/0x100\nmmc_send_tuning+0x108/0x1ac\nsdmmc_execute_tuning+0x14c/0x210\nmmc_execute_tuning+0x48/0xec\nmmc_sd_init_uhs_card.part.0+0x208/0x464\nmmc_sd_init_card+0x318/0x89c\nmmc_attach_sd+0xe4/0x180\nmmc_rescan+0x244/0x320\n\nDMA API debug brings to light leaking dma-mappings as dma_map_sg and\ndma_unmap_sg are not correctly balanced.\n\nIf an error occurs in mmci_cmd_irq function, only mmci_dma_error\nfunction is called and as this API is not managed on stm32 variant,\ndma_unmap_sg is never called in this error path.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26787", "url": "https://www.suse.com/security/cve/CVE-2024-26787" }, { "category": "external", "summary": "SUSE Bug 1222781 for CVE-2024-26787", "url": "https://bugzilla.suse.com/1222781" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26787" }, { "cve": "CVE-2024-26790", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26790" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ndmaengine: fsl-qdma: fix SoC may hang on 16 byte unaligned read\n\nThere is chip (ls1028a) errata:\n\nThe SoC may hang on 16 byte unaligned read transactions by QDMA.\n\nUnaligned read transactions initiated by QDMA may stall in the NOC\n(Network On-Chip), causing a deadlock condition. Stalled transactions will\ntrigger completion timeouts in PCIe controller.\n\nWorkaround:\nEnable prefetch by setting the source descriptor prefetchable bit\n( SD[PF] = 1 ).\n\nImplement this workaround.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26790", "url": "https://www.suse.com/security/cve/CVE-2024-26790" }, { "category": "external", "summary": "SUSE Bug 1222784 for CVE-2024-26790", "url": "https://bugzilla.suse.com/1222784" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26790" }, { "cve": "CVE-2024-26793", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26793" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\ngtp: fix use-after-free and null-ptr-deref in gtp_newlink()\n\nThe gtp_link_ops operations structure for the subsystem must be\nregistered after registering the gtp_net_ops pernet operations structure.\n\nSyzkaller hit \u0027general protection fault in gtp_genl_dump_pdp\u0027 bug:\n\n[ 1010.702740] gtp: GTP module unloaded\n[ 1010.715877] general protection fault, probably for non-canonical address 0xdffffc0000000001: 0000 [#1] SMP KASAN NOPTI\n[ 1010.715888] KASAN: null-ptr-deref in range [0x0000000000000008-0x000000000000000f]\n[ 1010.715895] CPU: 1 PID: 128616 Comm: a.out Not tainted 6.8.0-rc6-std-def-alt1 #1\n[ 1010.715899] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.0-alt1 04/01/2014\n[ 1010.715908] RIP: 0010:gtp_newlink+0x4d7/0x9c0 [gtp]\n[ 1010.715915] Code: 80 3c 02 00 0f 85 41 04 00 00 48 8b bb d8 05 00 00 e8 ed f6 ff ff 48 89 c2 48 89 c5 48 b8 00 00 00 00 00 fc ff df 48 c1 ea 03 \u003c80\u003e 3c 02 00 0f 85 4f 04 00 00 4c 89 e2 4c 8b 6d 00 48 b8 00 00 00\n[ 1010.715920] RSP: 0018:ffff888020fbf180 EFLAGS: 00010203\n[ 1010.715929] RAX: dffffc0000000000 RBX: ffff88800399c000 RCX: 0000000000000000\n[ 1010.715933] RDX: 0000000000000001 RSI: ffffffff84805280 RDI: 0000000000000282\n[ 1010.715938] RBP: 000000000000000d R08: 0000000000000001 R09: 0000000000000000\n[ 1010.715942] R10: 0000000000000001 R11: 0000000000000001 R12: ffff88800399cc80\n[ 1010.715947] R13: 0000000000000000 R14: 0000000000000000 R15: 0000000000000400\n[ 1010.715953] FS: 00007fd1509ab5c0(0000) GS:ffff88805b300000(0000) knlGS:0000000000000000\n[ 1010.715958] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\n[ 1010.715962] CR2: 0000000000000000 CR3: 000000001c07a000 CR4: 0000000000750ee0\n[ 1010.715968] PKRU: 55555554\n[ 1010.715972] Call Trace:\n[ 1010.715985] ? __die_body.cold+0x1a/0x1f\n[ 1010.715995] ? die_addr+0x43/0x70\n[ 1010.716002] ? exc_general_protection+0x199/0x2f0\n[ 1010.716016] ? asm_exc_general_protection+0x1e/0x30\n[ 1010.716026] ? gtp_newlink+0x4d7/0x9c0 [gtp]\n[ 1010.716034] ? gtp_net_exit+0x150/0x150 [gtp]\n[ 1010.716042] __rtnl_newlink+0x1063/0x1700\n[ 1010.716051] ? rtnl_setlink+0x3c0/0x3c0\n[ 1010.716063] ? is_bpf_text_address+0xc0/0x1f0\n[ 1010.716070] ? kernel_text_address.part.0+0xbb/0xd0\n[ 1010.716076] ? __kernel_text_address+0x56/0xa0\n[ 1010.716084] ? unwind_get_return_address+0x5a/0xa0\n[ 1010.716091] ? create_prof_cpu_mask+0x30/0x30\n[ 1010.716098] ? arch_stack_walk+0x9e/0xf0\n[ 1010.716106] ? stack_trace_save+0x91/0xd0\n[ 1010.716113] ? stack_trace_consume_entry+0x170/0x170\n[ 1010.716121] ? __lock_acquire+0x15c5/0x5380\n[ 1010.716139] ? mark_held_locks+0x9e/0xe0\n[ 1010.716148] ? kmem_cache_alloc_trace+0x35f/0x3c0\n[ 1010.716155] ? __rtnl_newlink+0x1700/0x1700\n[ 1010.716160] rtnl_newlink+0x69/0xa0\n[ 1010.716166] rtnetlink_rcv_msg+0x43b/0xc50\n[ 1010.716172] ? rtnl_fdb_dump+0x9f0/0x9f0\n[ 1010.716179] ? lock_acquire+0x1fe/0x560\n[ 1010.716188] ? netlink_deliver_tap+0x12f/0xd50\n[ 1010.716196] netlink_rcv_skb+0x14d/0x440\n[ 1010.716202] ? rtnl_fdb_dump+0x9f0/0x9f0\n[ 1010.716208] ? netlink_ack+0xab0/0xab0\n[ 1010.716213] ? netlink_deliver_tap+0x202/0xd50\n[ 1010.716220] ? netlink_deliver_tap+0x218/0xd50\n[ 1010.716226] ? __virt_addr_valid+0x30b/0x590\n[ 1010.716233] netlink_unicast+0x54b/0x800\n[ 1010.716240] ? netlink_attachskb+0x870/0x870\n[ 1010.716248] ? __check_object_size+0x2de/0x3b0\n[ 1010.716254] netlink_sendmsg+0x938/0xe40\n[ 1010.716261] ? netlink_unicast+0x800/0x800\n[ 1010.716269] ? __import_iovec+0x292/0x510\n[ 1010.716276] ? netlink_unicast+0x800/0x800\n[ 1010.716284] __sock_sendmsg+0x159/0x190\n[ 1010.716290] ____sys_sendmsg+0x712/0x880\n[ 1010.716297] ? sock_write_iter+0x3d0/0x3d0\n[ 1010.716304] ? __ia32_sys_recvmmsg+0x270/0x270\n[ 1010.716309] ? lock_acquire+0x1fe/0x560\n[ 1010.716315] ? drain_array_locked+0x90/0x90\n[ 1010.716324] ___sys_sendmsg+0xf8/0x170\n[ 1010.716331] ? sendmsg_copy_msghdr+0x170/0x170\n[ 1010.716337] ? lockdep_init_map\n---truncated---", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26793", "url": "https://www.suse.com/security/cve/CVE-2024-26793" }, { "category": "external", "summary": "SUSE Bug 1222428 for CVE-2024-26793", "url": "https://bugzilla.suse.com/1222428" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26793" }, { "cve": "CVE-2024-26798", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26798" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nfbcon: always restore the old font data in fbcon_do_set_font()\n\nCommit a5a923038d70 (fbdev: fbcon: Properly revert changes when\nvc_resize() failed) started restoring old font data upon failure (of\nvc_resize()). But it performs so only for user fonts. It means that the\n\"system\"/internal fonts are not restored at all. So in result, the very\nfirst call to fbcon_do_set_font() performs no restore at all upon\nfailing vc_resize().\n\nThis can be reproduced by Syzkaller to crash the system on the next\ninvocation of font_get(). It\u0027s rather hard to hit the allocation failure\nin vc_resize() on the first font_set(), but not impossible. Esp. if\nfault injection is used to aid the execution/failure. It was\ndemonstrated by Sirius:\n BUG: unable to handle page fault for address: fffffffffffffff8\n #PF: supervisor read access in kernel mode\n #PF: error_code(0x0000) - not-present page\n PGD cb7b067 P4D cb7b067 PUD cb7d067 PMD 0\n Oops: 0000 [#1] PREEMPT SMP KASAN\n CPU: 1 PID: 8007 Comm: poc Not tainted 6.7.0-g9d1694dc91ce #20\n Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.15.0-1 04/01/2014\n RIP: 0010:fbcon_get_font+0x229/0x800 drivers/video/fbdev/core/fbcon.c:2286\n Call Trace:\n \u003cTASK\u003e\n con_font_get drivers/tty/vt/vt.c:4558 [inline]\n con_font_op+0x1fc/0xf20 drivers/tty/vt/vt.c:4673\n vt_k_ioctl drivers/tty/vt/vt_ioctl.c:474 [inline]\n vt_ioctl+0x632/0x2ec0 drivers/tty/vt/vt_ioctl.c:752\n tty_ioctl+0x6f8/0x1570 drivers/tty/tty_io.c:2803\n vfs_ioctl fs/ioctl.c:51 [inline]\n ...\n\nSo restore the font data in any case, not only for user fonts. Note the\nlater \u0027if\u0027 is now protected by \u0027old_userfont\u0027 and not \u0027old_data\u0027 as the\nlatter is always set now. (And it is supposed to be non-NULL. Otherwise\nwe would see the bug above again.)", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26798", "url": "https://www.suse.com/security/cve/CVE-2024-26798" }, { "category": "external", "summary": "SUSE Bug 1222798 for CVE-2024-26798", "url": "https://bugzilla.suse.com/1222798" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26798" }, { "cve": "CVE-2024-26805", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26805" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nnetlink: Fix kernel-infoleak-after-free in __skb_datagram_iter\n\nsyzbot reported the following uninit-value access issue [1]:\n\nnetlink_to_full_skb() creates a new `skb` and puts the `skb-\u003edata`\npassed as a 1st arg of netlink_to_full_skb() onto new `skb`. The data\nsize is specified as `len` and passed to skb_put_data(). This `len`\nis based on `skb-\u003eend` that is not data offset but buffer offset. The\n`skb-\u003eend` contains data and tailroom. Since the tailroom is not\ninitialized when the new `skb` created, KMSAN detects uninitialized\nmemory area when copying the data.\n\nThis patch resolved this issue by correct the len from `skb-\u003eend` to\n`skb-\u003elen`, which is the actual data offset.\n\nBUG: KMSAN: kernel-infoleak-after-free in instrument_copy_to_user include/linux/instrumented.h:114 [inline]\nBUG: KMSAN: kernel-infoleak-after-free in copy_to_user_iter lib/iov_iter.c:24 [inline]\nBUG: KMSAN: kernel-infoleak-after-free in iterate_ubuf include/linux/iov_iter.h:29 [inline]\nBUG: KMSAN: kernel-infoleak-after-free in iterate_and_advance2 include/linux/iov_iter.h:245 [inline]\nBUG: KMSAN: kernel-infoleak-after-free in iterate_and_advance include/linux/iov_iter.h:271 [inline]\nBUG: KMSAN: kernel-infoleak-after-free in _copy_to_iter+0x364/0x2520 lib/iov_iter.c:186\n instrument_copy_to_user include/linux/instrumented.h:114 [inline]\n copy_to_user_iter lib/iov_iter.c:24 [inline]\n iterate_ubuf include/linux/iov_iter.h:29 [inline]\n iterate_and_advance2 include/linux/iov_iter.h:245 [inline]\n iterate_and_advance include/linux/iov_iter.h:271 [inline]\n _copy_to_iter+0x364/0x2520 lib/iov_iter.c:186\n copy_to_iter include/linux/uio.h:197 [inline]\n simple_copy_to_iter+0x68/0xa0 net/core/datagram.c:532\n __skb_datagram_iter+0x123/0xdc0 net/core/datagram.c:420\n skb_copy_datagram_iter+0x5c/0x200 net/core/datagram.c:546\n skb_copy_datagram_msg include/linux/skbuff.h:3960 [inline]\n packet_recvmsg+0xd9c/0x2000 net/packet/af_packet.c:3482\n sock_recvmsg_nosec net/socket.c:1044 [inline]\n sock_recvmsg net/socket.c:1066 [inline]\n sock_read_iter+0x467/0x580 net/socket.c:1136\n call_read_iter include/linux/fs.h:2014 [inline]\n new_sync_read fs/read_write.c:389 [inline]\n vfs_read+0x8f6/0xe00 fs/read_write.c:470\n ksys_read+0x20f/0x4c0 fs/read_write.c:613\n __do_sys_read fs/read_write.c:623 [inline]\n __se_sys_read fs/read_write.c:621 [inline]\n __x64_sys_read+0x93/0xd0 fs/read_write.c:621\n do_syscall_x64 arch/x86/entry/common.c:52 [inline]\n do_syscall_64+0x44/0x110 arch/x86/entry/common.c:83\n entry_SYSCALL_64_after_hwframe+0x63/0x6b\n\nUninit was stored to memory at:\n skb_put_data include/linux/skbuff.h:2622 [inline]\n netlink_to_full_skb net/netlink/af_netlink.c:181 [inline]\n __netlink_deliver_tap_skb net/netlink/af_netlink.c:298 [inline]\n __netlink_deliver_tap+0x5be/0xc90 net/netlink/af_netlink.c:325\n netlink_deliver_tap net/netlink/af_netlink.c:338 [inline]\n netlink_deliver_tap_kernel net/netlink/af_netlink.c:347 [inline]\n netlink_unicast_kernel net/netlink/af_netlink.c:1341 [inline]\n netlink_unicast+0x10f1/0x1250 net/netlink/af_netlink.c:1368\n netlink_sendmsg+0x1238/0x13d0 net/netlink/af_netlink.c:1910\n sock_sendmsg_nosec net/socket.c:730 [inline]\n __sock_sendmsg net/socket.c:745 [inline]\n ____sys_sendmsg+0x9c2/0xd60 net/socket.c:2584\n ___sys_sendmsg+0x28d/0x3c0 net/socket.c:2638\n __sys_sendmsg net/socket.c:2667 [inline]\n __do_sys_sendmsg net/socket.c:2676 [inline]\n __se_sys_sendmsg net/socket.c:2674 [inline]\n __x64_sys_sendmsg+0x307/0x490 net/socket.c:2674\n do_syscall_x64 arch/x86/entry/common.c:52 [inline]\n do_syscall_64+0x44/0x110 arch/x86/entry/common.c:83\n entry_SYSCALL_64_after_hwframe+0x63/0x6b\n\nUninit was created at:\n free_pages_prepare mm/page_alloc.c:1087 [inline]\n free_unref_page_prepare+0xb0/0xa40 mm/page_alloc.c:2347\n free_unref_page_list+0xeb/0x1100 mm/page_alloc.c:2533\n release_pages+0x23d3/0x2410 mm/swap.c:1042\n free_pages_and_swap_cache+0xd9/0xf0 mm/swap_state.c:316\n tlb_batch_pages\n---truncated---", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26805", "url": "https://www.suse.com/security/cve/CVE-2024-26805" }, { "category": "external", "summary": "SUSE Bug 1222630 for CVE-2024-26805", "url": "https://bugzilla.suse.com/1222630" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26805" }, { "cve": "CVE-2024-26807", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26807" } ], "notes": [ { "category": "general", "text": "In the Linux kernel, the following vulnerability has been resolved:\n\nBoth cadence-quadspi -\u003eruntime_suspend() and -\u003eruntime_resume()\nimplementations start with:\n\n\tstruct cqspi_st *cqspi = dev_get_drvdata(dev);\n\tstruct spi_controller *host = dev_get_drvdata(dev);\n\nThis obviously cannot be correct, unless \"struct cqspi_st\" is the\nfirst member of \" struct spi_controller\", or the other way around, but\nit is not the case. \"struct spi_controller\" is allocated by\ndevm_spi_alloc_host(), which allocates an extra amount of memory for\nprivate data, used to store \"struct cqspi_st\".\n\nThe -\u003eprobe() function of the cadence-quadspi driver then sets the\ndevice drvdata to store the address of the \"struct cqspi_st\"\nstructure. Therefore:\n\n\tstruct cqspi_st *cqspi = dev_get_drvdata(dev);\n\nis correct, but:\n\n\tstruct spi_controller *host = dev_get_drvdata(dev);\n\nis not, as it makes \"host\" point not to a \"struct spi_controller\" but\nto the same \"struct cqspi_st\" structure as above.\n\nThis obviously leads to bad things (memory corruption, kernel crashes)\ndirectly during -\u003eprobe(), as -\u003eprobe() enables the device using PM\nruntime, leading the -\u003eruntime_resume() hook being called, which in\nturns calls spi_controller_resume() with the wrong pointer.\n\nThis has at least been reported [0] to cause a kernel crash, but the\nexact behavior will depend on the memory contents.\n\n[0] https://lore.kernel.org/all/20240226121803.5a7r5wkpbbowcxgx@dhruva/\n\nThis issue potentially affects all platforms that are currently using\nthe cadence-quadspi driver.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26807", "url": "https://www.suse.com/security/cve/CVE-2024-26807" }, { "category": "external", "summary": "SUSE Bug 1222801 for CVE-2024-26807", "url": "https://bugzilla.suse.com/1222801" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26807" }, { "cve": "CVE-2024-26848", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-26848" } ], "notes": [ { "category": "general", "text": "This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-26848", "url": "https://www.suse.com/security/cve/CVE-2024-26848" }, { "category": "external", "summary": "SUSE Bug 1223030 for CVE-2024-26848", "url": "https://bugzilla.suse.com/1223030" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 3.3, "baseSeverity": "LOW", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "SUSE Linux Enterprise Module for Public Cloud 15 SP5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:cluster-md-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:dlm-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:gfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-extra-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-livepatch-devel-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-azure-optional-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-azure-vdso-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kernel-devel-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-source-azure-5.14.21-150500.33.48.1.noarch", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kernel-syms-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:kselftests-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:ocfs2-kmp-azure-5.14.21-150500.33.48.1.x86_64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.aarch64", "openSUSE Leap 15.5:reiserfs-kmp-azure-5.14.21-150500.33.48.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-05-03T07:54:25Z", "details": "moderate" } ], "title": "CVE-2024-26848" } ] }
Loading…
Loading…
Sightings
Author | Source | Type | Date |
---|
Nomenclature
- Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
- Confirmed: The vulnerability is confirmed from an analyst perspective.
- Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
- Patched: This vulnerability was successfully patched by the user reporting the sighting.
- Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
- Not confirmed: The user expresses doubt about the veracity of the vulnerability.
- Not patched: This vulnerability was not successfully patched by the user reporting the sighting.
Loading…
Loading…