SUSE-SU-2022:1197-1

    Dashboard / Vulnerabilities / SUSE-SU-2022:1197-1

    SUSE-SU-2022:1197-1

    Published: 14 Apr 2022Last Modified: 4 Feb 2026

    Summary: Security update for the Linux Kernel

    Details: The SUSE Linux Enterprise 15 SP2 kernel was updated. The following security bugs were fixed: - CVE-2021-45868: Fixed a wrong validation check in fs/quota/quota_tree.c which could lead to an use-after-free if there is a corrupted quota file. (bnc#1197366) - CVE-2022-27666: Fixed a buffer overflow vulnerability in IPsec ESP transformation code. This flaw allowed a local attacker with a normal user privilege to overwrite kernel heap objects and may cause a local privilege escalation. (bnc#1197462) - CVE-2022-0850: Fixed a kernel information leak vulnerability in iov_iter.c. (bsc#1196761) - CVE-2022-1055: Fixed a use-after-free in tc_new_tfilter that could allow a local attacker to gain privilege escalation. (bnc#1197702) - CVE-2022-1048: Fixed a race Condition in snd_pcm_hw_free leading to use-after-free due to the AB/BA lock with buffer_mutex and mmap_lock. (bsc#1197331) - CVE-2022-28390: Fixed a double free in drivers/net/can/usb/ems_usb.c vulnerability in the Linux kernel. (bnc#1198031) - CVE-2022-28388: Fixed a double free in drivers/net/can/usb/usb_8dev.c vulnerability in the Linux kernel. (bnc#1198032) - CVE-2022-28389: Fixed a double free in drivers/net/can/usb/mcba_usb.c vulnerability in the Linux kernel. (bnc#1198033) - CVE-2022-1016: Fixed a vulnerability in the nf_tables component of the netfilter subsystem. This vulnerability gives an attacker a powerful primitive that can be used to both read from and write to relative stack data, which can lead to arbitrary code execution. (bsc#1197227) - CVE-2022-0854: Fixed a memory leak flaw was found in the Linux kernels DMA subsystem. This flaw allowed a local user to read random memory from the kernel space. (bnc#1196823) - CVE-2022-26966: Fixed an issue in drivers/net/usb/sr9700.c, which allowed attackers to obtain sensitive information from the memory via crafted frame lengths from a USB device. (bsc#1196836) - CVE-2021-39698: Fixed a possible memory corruption due to a use after free in aio_poll_complete_work. This could lead to local escalation of privilege with no additional execution privileges needed. (bsc#1196956) - CVE-2021-0920: Fixed a race condition during UNIX socket garbage collection that could lead to local privilege escalation. (bsc#119373) - CVE-2022-23036,CVE-2022-23037,CVE-2022-23038,CVE-2022-23039,CVE-2022-23040,CVE-2022-23041,CVE-2022-23042: Fixed multiple issues which could have lead to read/write access to memory pages or denial of service. These issues are related to the Xen PV device frontend drivers. (bsc#1196488) - CVE-2022-26490: Fixed a buffer overflow in the st21nfca driver. An attacker with adjacent NFC access could crash the system or corrupt the system memory. (bsc#1196830) The following non-security bugs were fixed: - ax88179_178a: Merge memcpy + le32_to_cpus to get_unaligned_le32 (bsc#1196018). - cifs: use the correct max-length for dentry_path_raw() (bsc1196196). - drm: add a locked version of drm_is_current_master (bsc#1197914). - drm: drm_file struct kABI compatibility workaround (bsc#1197914). - drm: protect drm_master pointers in drm_lease.c (bsc#1197914). - drm: serialize drm_file.master with a new spinlock (bsc#1197914). - drm: use the lookup lock in drm_is_current_master (bsc#1197914). - net: tipc: validate domain record count on input (bsc#1195254). - llc: fix netdevice reference leaks in llc_ui_bind() (git-fixes). - net: usb: ax88179_178a: Fix out-of-bounds accesses in RX fixup (bsc#1196018). - net/mlx5e: Fix page DMA map/unmap attributes (bsc#1196468). - netfilter: conntrack: do not refresh sctp entries in closed state (bsc#1197389). - powerpc/mm/numa: skip NUMA_NO_NODE onlining in parse_numa_properties() (bsc#1179639 ltc#189002 git-fixes). - SUNRPC: avoid race between mod_timer() and del_timer_sync() (bnc#1195403). - usb: host: xen-hcd: add missing unlock in error path (git-fixes). - xen/usb: do not use gnttab_end_foreign_access() in xenhcd_gnttab_done() (bsc#1196488, XSA-396).

    References: https://www.suse.com/support/update/announcement/2022/suse-su-20221197-1/, https://bugzilla.suse.com/1179639, https://bugzilla.suse.com/1189562, https://bugzilla.suse.com/1193731, https://bugzilla.suse.com/1194943, https://bugzilla.suse.com/1195051, https://bugzilla.suse.com/1195254, https://bugzilla.suse.com/1195353, https://bugzilla.suse.com/1195403, https://bugzilla.suse.com/1195939, https://bugzilla.suse.com/1196018, https://bugzilla.suse.com/1196196, https://bugzilla.suse.com/1196468, https://bugzilla.suse.com/1196488, https://bugzilla.suse.com/1196761, https://bugzilla.suse.com/1196823, https://bugzilla.suse.com/1196830, https://bugzilla.suse.com/1196836, https://bugzilla.suse.com/1196956, https://bugzilla.suse.com/1197227, https://bugzilla.suse.com/1197331, https://bugzilla.suse.com/1197366, https://bugzilla.suse.com/1197389, https://bugzilla.suse.com/1197462, https://bugzilla.suse.com/1197702, https://bugzilla.suse.com/1197914, https://bugzilla.suse.com/1198031, https://bugzilla.suse.com/1198032, https://bugzilla.suse.com/1198033, https://www.suse.com/security/cve/CVE-2021-0920, https://www.suse.com/security/cve/CVE-2021-39698, https://www.suse.com/security/cve/CVE-2021-45868, https://www.suse.com/security/cve/CVE-2022-0850, https://www.suse.com/security/cve/CVE-2022-0854, https://www.suse.com/security/cve/CVE-2022-1016, https://www.suse.com/security/cve/CVE-2022-1048, https://www.suse.com/security/cve/CVE-2022-1055, https://www.suse.com/security/cve/CVE-2022-23036, https://www.suse.com/security/cve/CVE-2022-23037, https://www.suse.com/security/cve/CVE-2022-23038, https://www.suse.com/security/cve/CVE-2022-23039, https://www.suse.com/security/cve/CVE-2022-23040, https://www.suse.com/security/cve/CVE-2022-23041, https://www.suse.com/security/cve/CVE-2022-23042, https://www.suse.com/security/cve/CVE-2022-26490, https://www.suse.com/security/cve/CVE-2022-26966, https://www.suse.com/security/cve/CVE-2022-27666, https://www.suse.com/security/cve/CVE-2022-28388, https://www.suse.com/security/cve/CVE-2022-28389, https://www.suse.com/security/cve/CVE-2022-28390

    Affected packages

    Package

    Name: kernel-default

    Purl: pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Live%20Patching%2015%20SP2

    Affected ranges

    Type: ECOSYSTEM

    Events:

    Introduced- 0
    Fixed -5.3.18-150200.24.112.1

    Affected versions

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High
    SUSE-SU-2022:1197-1 | CVE-DB