SUSE-SU-2024:1489-1
Dashboard / Vulnerabilities / SUSE-SU-2024:1489-1
SUSE-SU-2024:1489-1
Summary: Security update for the Linux Kernel
Details: The SUSE Linux Enterprise 15 SP3 LTSS kernel was updated to receive various security bugfixes. The following security bugs were fixed: - CVE-2020-36781: Fixed reference leak when pm_runtime_get_sync fails in i2c/imx (bsc#1220557). - CVE-2021-46911: Fixed kernel panic (bsc#1220400). - CVE-2021-46914: Fixed unbalanced device enable/disable in suspend/resume in pci_disable_device() (bsc#1220465). - CVE-2021-46917: Fixed wq cleanup of WQCFG registers in idxd (bsc#1220432). - CVE-2021-46918: Fixed not clearing MSIX permission entry on shutdown in idxd (bsc#1220429). - CVE-2021-46919: Fixed wq size store permission state in idxd (bsc#1220414). - CVE-2021-46920: Fixed clobbering of SWERR overflow bit on writeback (bsc#1220426). - CVE-2021-46922: Fixed TPM reservation for seal/unseal (bsc#1220475). - CVE-2021-46930: Fixed usb/mtu3 list_head check warning (bsc#1220484). - CVE-2021-46931: Fixed wrong type casting in mlx5e_tx_reporter_dump_sq() (bsc#1220486). - CVE-2021-46933: Fixed possible underflow in ffs_data_clear() (bsc#1220487). - CVE-2021-46956: Fixed memory leak in virtio_fs_probe() (bsc#1220516). - CVE-2021-46959: Fixed use-after-free with devm_spi_alloc_* (bsc#1220734). - CVE-2021-46961: Fixed spurious interrup handling (bsc#1220529). - CVE-2021-46971: Fixed unconditional security_locked_down() call (bsc#1220697). - CVE-2021-46976: Fixed crash in auto_retire in drm/i915 (bsc#1220621). - CVE-2021-46980: Fixed not retrieving all the PDOs instead of just the first 4 in usb/typec/ucsi (bsc#1220663). - CVE-2021-46983: Fixed NULL pointer dereference when SEND is completed with error (bsc#1220639). - CVE-2021-46988: Fixed release page in error path to avoid BUG_ON (bsc#1220706). - CVE-2021-47001: Fixed cwnd update ordering in xprtrdma (bsc#1220670). - CVE-2021-47003: Fixed potential null dereference on pointer status in idxd_cmd_exec (bsc#1220677). - CVE-2021-47009: Fixed memory leak on object td (bsc#1220733). - CVE-2021-47014: Fixed wild memory access when clearing fragments in net/sched/act_ct (bsc#1220630). - CVE-2021-47017: Fixed use after free in ath10k_htc_send_bundle (bsc#1220678). - CVE-2021-47026: Fixed not destroying sysfs after removing session from active list (bsc#1220685). - CVE-2021-47035: Fixed wrong WO permissions on second-level paging entries in iommu/vt-d (bsc#1220688). - CVE-2021-47038: Fixed deadlock between hci_dev->lock and socket lock in bluetooth (bsc#1220753). - CVE-2021-47044: Fixed shift-out-of-bounds in load_balance() in sched/fair (bsc#1220759). - CVE-2021-47046: Fixed off by one in hdmi_14_process_transaction() (bsc#1220758). - CVE-2021-47087: Fixed incorrect page free bug in tee/optee (bsc#1220954). - CVE-2021-47095: Fixed missing initialization in ipmi/ssif (bsc#1220979). - CVE-2021-47097: Fixed stack out of bound access in elantech_change_report_id() (bsc#1220982). - CVE-2021-47100: Fixed UAF when uninstall in ipmi (bsc#1220985). - CVE-2021-47101: Fixed uninit-value in asix_mdio_read() (bsc#1220987). - CVE-2021-47109: Fixed NUD_NOARP entries to be forced GCed (bsc#1221534). - CVE-2021-47130: Fixed freeing unallocated p2pmem in nvmet (bsc#1221552). - CVE-2021-47137: Fixed memory corruption in RX ring in net/lantiq (bsc#1221932). - CVE-2021-47150: Fixed the potential memory leak in fec_enet_init() (bsc#1221973). - CVE-2021-47160: Fixed VLAN traffic leaks in dsa: mt7530 (bsc#1221974). - CVE-2021-47164: Fixed null pointer dereference accessing lag dev in net/mlx5e (bsc#1221978). - CVE-2021-47174: Fixed missing check in irq_fpu_usable() (bsc#1221990). - CVE-2021-47175: Fixed OOB access in net/sched/fq_pie (bsc#1222003). - CVE-2021-47181: Fixed a null pointer dereference caused by calling platform_get_resource() (bsc#1222660). - CVE-2021-47183: Fixed a null pointer dereference during link down processing in scsi lpfc (bsc#1192145, bsc#1222664). - CVE-2021-47185: Fixed a softlockup issue in flush_to_ldisc in tty tty_buffer (bsc#1222669). - CVE-2021-47189: Fixed denial of service due to memory ordering issues between normal and ordered work functions in btrfs (bsc#1222706). - CVE-2023-0160: Fixed deadlock flaw in BPF that could allow a local user to potentially crash the system (bsc#1209657). - CVE-2023-28746: Fixed Register File Data Sampling (bsc#1213456). - CVE-2023-52469: Fixed a use-after-free in kv_parse_power_table (bsc#1220411). - CVE-2023-52470: Fixed null-ptr-deref in radeon_crtc_init() (bsc#1220413). - CVE-2023-52474: Fixed a vulnerability with non-PAGE_SIZE-end multi-iovec user SDMA requests (bsc#1220445). - CVE-2023-52476: Fixed possible unhandled page fault via perf sampling NMI during vsyscall (bsc#1220703). - CVE-2023-52492: Fixed a null-pointer-dereference in channel unregistration function __dma_async_device_channel_register() (bsc#1221276). - CVE-2023-52500: Fixed information leaking when processing OPC_INB_SET_CONTROLLER_CONFIG command (bsc#1220883). - CVE-2023-52508: Fixed null pointer dereference in nvme_fc_io_getuuid() (bsc#1221015). - CVE-2023-52575: Fixed SBPB enablement for spec_rstack_overflow=off (bsc#1220871). - CVE-2023-52583: Fixed deadlock or deadcode of misusing dget() inside ceph (bsc#1221058). - CVE-2023-52607: Fixed a null-pointer-dereference in pgtable_cache_add kasprintf() (bsc#1221061). - CVE-2023-52628: Fixed 4-byte stack OOB write in nftables (bsc#1222117). - CVE-2023-6270: Fixed a use-after-free issue in aoecmd_cfg_pkts (bsc#1218562). - CVE-2023-6531: Fixed a use-after-free flaw due to a race problem in the unix garbage collector's deletion of SKB races with unix_stream_read_generic()on the socket that the SKB is queued on (bsc#1218447). - CVE-2023-7042: Fixed a null-pointer-dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() (bsc#1218336). - CVE-2023-7192: Fixed a memory leak problem in ctnetlink_create_conntrack in net/netfilter/nf_conntrack_netlink.c (bsc#1218479). - CVE-2024-22099: Fixed a null-pointer-dereference in rfcomm_check_security (bsc#1219170). - CVE-2024-26600: Fixed NULL pointer dereference for SRP in phy-omap-usb2 (bsc#1220340). - CVE-2024-26614: Fixed the initialization of accept_queue's spinlocks (bsc#1221293). - CVE-2024-26642: Fixed the set of anonymous timeout flag in netfilter nf_tables (bsc#1221830). - CVE-2024-26704: Fixed a double-free of blocks due to wrong extents moved_len in ext4 (bsc#1222422). - CVE-2024-26733: Fixed an overflow in arp_req_get() in arp (bsc#1222585). The following non-security bugs were fixed: - fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super (bsc#1219264). - tty: n_gsm: require CAP_NET_ADMIN to attach N_GSM0710 ldisc (bsc#1222619). - group-source-files.pl: Quote filenames (boo#1221077). - kernel-binary: certs: Avoid trailing space - mm: fix gup_pud_range (bsc#1220824).
References: https://www.suse.com/support/update/announcement/2024/suse-su-20241489-1/, https://bugzilla.suse.com/1184942, https://bugzilla.suse.com/1186060, https://bugzilla.suse.com/1192145, https://bugzilla.suse.com/1194516, https://bugzilla.suse.com/1208995, https://bugzilla.suse.com/1209635, https://bugzilla.suse.com/1209657, https://bugzilla.suse.com/1212514, https://bugzilla.suse.com/1213456, https://bugzilla.suse.com/1217987, https://bugzilla.suse.com/1217988, https://bugzilla.suse.com/1217989, https://bugzilla.suse.com/1218336, https://bugzilla.suse.com/1218447, https://bugzilla.suse.com/1218479, https://bugzilla.suse.com/1218562, https://bugzilla.suse.com/1219170, https://bugzilla.suse.com/1219264, https://bugzilla.suse.com/1220320, https://bugzilla.suse.com/1220340, https://bugzilla.suse.com/1220366, https://bugzilla.suse.com/1220400, https://bugzilla.suse.com/1220411, https://bugzilla.suse.com/1220413, https://bugzilla.suse.com/1220414, https://bugzilla.suse.com/1220425, https://bugzilla.suse.com/1220426, https://bugzilla.suse.com/1220429, https://bugzilla.suse.com/1220432, https://bugzilla.suse.com/1220442, https://bugzilla.suse.com/1220445, https://bugzilla.suse.com/1220465, https://bugzilla.suse.com/1220468, https://bugzilla.suse.com/1220475, https://bugzilla.suse.com/1220484, https://bugzilla.suse.com/1220486, https://bugzilla.suse.com/1220487, https://bugzilla.suse.com/1220516, https://bugzilla.suse.com/1220521, https://bugzilla.suse.com/1220528, https://bugzilla.suse.com/1220529, https://bugzilla.suse.com/1220532, https://bugzilla.suse.com/1220554, https://bugzilla.suse.com/1220556, https://bugzilla.suse.com/1220557, https://bugzilla.suse.com/1220560, https://bugzilla.suse.com/1220561, https://bugzilla.suse.com/1220566, https://bugzilla.suse.com/1220575, https://bugzilla.suse.com/1220580, https://bugzilla.suse.com/1220583, https://bugzilla.suse.com/1220611, https://bugzilla.suse.com/1220615, https://bugzilla.suse.com/1220621, https://bugzilla.suse.com/1220625, https://bugzilla.suse.com/1220630, https://bugzilla.suse.com/1220631, https://bugzilla.suse.com/1220638, https://bugzilla.suse.com/1220639, https://bugzilla.suse.com/1220640, https://bugzilla.suse.com/1220641, https://bugzilla.suse.com/1220662, https://bugzilla.suse.com/1220663, https://bugzilla.suse.com/1220669, https://bugzilla.suse.com/1220670, https://bugzilla.suse.com/1220677, https://bugzilla.suse.com/1220678, https://bugzilla.suse.com/1220685, https://bugzilla.suse.com/1220687, https://bugzilla.suse.com/1220688, https://bugzilla.suse.com/1220692, https://bugzilla.suse.com/1220697, https://bugzilla.suse.com/1220703, https://bugzilla.suse.com/1220706, https://bugzilla.suse.com/1220733, https://bugzilla.suse.com/1220734, https://bugzilla.suse.com/1220739, https://bugzilla.suse.com/1220743, https://bugzilla.suse.com/1220745, https://bugzilla.suse.com/1220749, https://bugzilla.suse.com/1220751, https://bugzilla.suse.com/1220753, https://bugzilla.suse.com/1220758, https://bugzilla.suse.com/1220759, https://bugzilla.suse.com/1220764, https://bugzilla.suse.com/1220768, https://bugzilla.suse.com/1220769, https://bugzilla.suse.com/1220777, https://bugzilla.suse.com/1220779, https://bugzilla.suse.com/1220785, https://bugzilla.suse.com/1220790, https://bugzilla.suse.com/1220794, https://bugzilla.suse.com/1220824, https://bugzilla.suse.com/1220826, https://bugzilla.suse.com/1220829, https://bugzilla.suse.com/1220836, https://bugzilla.suse.com/1220846, https://bugzilla.suse.com/1220850, https://bugzilla.suse.com/1220861, https://bugzilla.suse.com/1220871, https://bugzilla.suse.com/1220883, https://bugzilla.suse.com/1220946, https://bugzilla.suse.com/1220954, https://bugzilla.suse.com/1220969, https://bugzilla.suse.com/1220979, https://bugzilla.suse.com/1220982, https://bugzilla.suse.com/1220985, https://bugzilla.suse.com/1220987, https://bugzilla.suse.com/1221015, https://bugzilla.suse.com/1221044, https://bugzilla.suse.com/1221058, https://bugzilla.suse.com/1221061, https://bugzilla.suse.com/1221077, https://bugzilla.suse.com/1221088, https://bugzilla.suse.com/1221276, https://bugzilla.suse.com/1221293, https://bugzilla.suse.com/1221532, https://bugzilla.suse.com/1221534, https://bugzilla.suse.com/1221541, https://bugzilla.suse.com/1221548, https://bugzilla.suse.com/1221552, https://bugzilla.suse.com/1221575, https://bugzilla.suse.com/1221605, https://bugzilla.suse.com/1221606, https://bugzilla.suse.com/1221608, https://bugzilla.suse.com/1221830, https://bugzilla.suse.com/1221931, https://bugzilla.suse.com/1221932, https://bugzilla.suse.com/1221934, https://bugzilla.suse.com/1221935, https://bugzilla.suse.com/1221949, https://bugzilla.suse.com/1221952, https://bugzilla.suse.com/1221965, https://bugzilla.suse.com/1221966, https://bugzilla.suse.com/1221969, https://bugzilla.suse.com/1221973, https://bugzilla.suse.com/1221974, https://bugzilla.suse.com/1221978, https://bugzilla.suse.com/1221989, https://bugzilla.suse.com/1221990, https://bugzilla.suse.com/1221991, https://bugzilla.suse.com/1221992, https://bugzilla.suse.com/1221993, https://bugzilla.suse.com/1221994, https://bugzilla.suse.com/1221996, https://bugzilla.suse.com/1221997, https://bugzilla.suse.com/1221998, https://bugzilla.suse.com/1221999, https://bugzilla.suse.com/1222000, https://bugzilla.suse.com/1222001, https://bugzilla.suse.com/1222002, https://bugzilla.suse.com/1222003, https://bugzilla.suse.com/1222004, https://bugzilla.suse.com/1222117, https://bugzilla.suse.com/1222422, https://bugzilla.suse.com/1222585, https://bugzilla.suse.com/1222619, https://bugzilla.suse.com/1222660, https://bugzilla.suse.com/1222664, https://bugzilla.suse.com/1222669, https://bugzilla.suse.com/1222706, https://www.suse.com/security/cve/CVE-2020-36780, https://www.suse.com/security/cve/CVE-2020-36781, https://www.suse.com/security/cve/CVE-2020-36782, https://www.suse.com/security/cve/CVE-2020-36783, https://www.suse.com/security/cve/CVE-2021-23134, https://www.suse.com/security/cve/CVE-2021-29155, https://www.suse.com/security/cve/CVE-2021-46908, https://www.suse.com/security/cve/CVE-2021-46909, https://www.suse.com/security/cve/CVE-2021-46911, https://www.suse.com/security/cve/CVE-2021-46914, https://www.suse.com/security/cve/CVE-2021-46917, https://www.suse.com/security/cve/CVE-2021-46918, https://www.suse.com/security/cve/CVE-2021-46919, https://www.suse.com/security/cve/CVE-2021-46920, https://www.suse.com/security/cve/CVE-2021-46921, https://www.suse.com/security/cve/CVE-2021-46922, https://www.suse.com/security/cve/CVE-2021-46930, https://www.suse.com/security/cve/CVE-2021-46931, https://www.suse.com/security/cve/CVE-2021-46933, https://www.suse.com/security/cve/CVE-2021-46938, https://www.suse.com/security/cve/CVE-2021-46939, https://www.suse.com/security/cve/CVE-2021-46943, https://www.suse.com/security/cve/CVE-2021-46944, https://www.suse.com/security/cve/CVE-2021-46950, https://www.suse.com/security/cve/CVE-2021-46951, https://www.suse.com/security/cve/CVE-2021-46956, https://www.suse.com/security/cve/CVE-2021-46958, https://www.suse.com/security/cve/CVE-2021-46959, https://www.suse.com/security/cve/CVE-2021-46960, https://www.suse.com/security/cve/CVE-2021-46961, https://www.suse.com/security/cve/CVE-2021-46962, https://www.suse.com/security/cve/CVE-2021-46963, https://www.suse.com/security/cve/CVE-2021-46971, https://www.suse.com/security/cve/CVE-2021-46976, https://www.suse.com/security/cve/CVE-2021-46980, https://www.suse.com/security/cve/CVE-2021-46981, https://www.suse.com/security/cve/CVE-2021-46983, https://www.suse.com/security/cve/CVE-2021-46984, https://www.suse.com/security/cve/CVE-2021-46988, https://www.suse.com/security/cve/CVE-2021-46990, https://www.suse.com/security/cve/CVE-2021-46991, https://www.suse.com/security/cve/CVE-2021-46992, https://www.suse.com/security/cve/CVE-2021-46998, https://www.suse.com/security/cve/CVE-2021-47000, https://www.suse.com/security/cve/CVE-2021-47001, https://www.suse.com/security/cve/CVE-2021-47003, https://www.suse.com/security/cve/CVE-2021-47006, https://www.suse.com/security/cve/CVE-2021-47009, https://www.suse.com/security/cve/CVE-2021-47013, https://www.suse.com/security/cve/CVE-2021-47014, https://www.suse.com/security/cve/CVE-2021-47015, https://www.suse.com/security/cve/CVE-2021-47017, https://www.suse.com/security/cve/CVE-2021-47020, https://www.suse.com/security/cve/CVE-2021-47026, https://www.suse.com/security/cve/CVE-2021-47034, https://www.suse.com/security/cve/CVE-2021-47035, https://www.suse.com/security/cve/CVE-2021-47038, https://www.suse.com/security/cve/CVE-2021-47044, https://www.suse.com/security/cve/CVE-2021-47045, https://www.suse.com/security/cve/CVE-2021-47046, https://www.suse.com/security/cve/CVE-2021-47049, https://www.suse.com/security/cve/CVE-2021-47051, https://www.suse.com/security/cve/CVE-2021-47055, https://www.suse.com/security/cve/CVE-2021-47056, https://www.suse.com/security/cve/CVE-2021-47058, https://www.suse.com/security/cve/CVE-2021-47061, https://www.suse.com/security/cve/CVE-2021-47063, https://www.suse.com/security/cve/CVE-2021-47065, https://www.suse.com/security/cve/CVE-2021-47068, https://www.suse.com/security/cve/CVE-2021-47069, https://www.suse.com/security/cve/CVE-2021-47070, https://www.suse.com/security/cve/CVE-2021-47071, https://www.suse.com/security/cve/CVE-2021-47073, https://www.suse.com/security/cve/CVE-2021-47077, https://www.suse.com/security/cve/CVE-2021-47082, https://www.suse.com/security/cve/CVE-2021-47087, https://www.suse.com/security/cve/CVE-2021-47095, https://www.suse.com/security/cve/CVE-2021-47097, https://www.suse.com/security/cve/CVE-2021-47100, https://www.suse.com/security/cve/CVE-2021-47101, https://www.suse.com/security/cve/CVE-2021-47109, https://www.suse.com/security/cve/CVE-2021-47110, https://www.suse.com/security/cve/CVE-2021-47112, https://www.suse.com/security/cve/CVE-2021-47114, https://www.suse.com/security/cve/CVE-2021-47117, https://www.suse.com/security/cve/CVE-2021-47118, https://www.suse.com/security/cve/CVE-2021-47119, https://www.suse.com/security/cve/CVE-2021-47120, https://www.suse.com/security/cve/CVE-2021-47130, https://www.suse.com/security/cve/CVE-2021-47136, https://www.suse.com/security/cve/CVE-2021-47137, https://www.suse.com/security/cve/CVE-2021-47138, https://www.suse.com/security/cve/CVE-2021-47139, https://www.suse.com/security/cve/CVE-2021-47141, https://www.suse.com/security/cve/CVE-2021-47142, https://www.suse.com/security/cve/CVE-2021-47144, https://www.suse.com/security/cve/CVE-2021-47150, https://www.suse.com/security/cve/CVE-2021-47153, https://www.suse.com/security/cve/CVE-2021-47160, https://www.suse.com/security/cve/CVE-2021-47161, https://www.suse.com/security/cve/CVE-2021-47164, https://www.suse.com/security/cve/CVE-2021-47165, https://www.suse.com/security/cve/CVE-2021-47166, https://www.suse.com/security/cve/CVE-2021-47167, https://www.suse.com/security/cve/CVE-2021-47168, https://www.suse.com/security/cve/CVE-2021-47169, https://www.suse.com/security/cve/CVE-2021-47170, https://www.suse.com/security/cve/CVE-2021-47171, https://www.suse.com/security/cve/CVE-2021-47172, https://www.suse.com/security/cve/CVE-2021-47173, https://www.suse.com/security/cve/CVE-2021-47174, https://www.suse.com/security/cve/CVE-2021-47175, https://www.suse.com/security/cve/CVE-2021-47176, https://www.suse.com/security/cve/CVE-2021-47177, https://www.suse.com/security/cve/CVE-2021-47179, https://www.suse.com/security/cve/CVE-2021-47180, https://www.suse.com/security/cve/CVE-2021-47181, https://www.suse.com/security/cve/CVE-2021-47183, https://www.suse.com/security/cve/CVE-2021-47185, https://www.suse.com/security/cve/CVE-2021-47189, https://www.suse.com/security/cve/CVE-2022-0487, https://www.suse.com/security/cve/CVE-2022-4744, https://www.suse.com/security/cve/CVE-2022-48626, https://www.suse.com/security/cve/CVE-2023-0160, https://www.suse.com/security/cve/CVE-2023-1192, https://www.suse.com/security/cve/CVE-2023-28746, https://www.suse.com/security/cve/CVE-2023-35827, https://www.suse.com/security/cve/CVE-2023-52454, https://www.suse.com/security/cve/CVE-2023-52469, https://www.suse.com/security/cve/CVE-2023-52470, https://www.suse.com/security/cve/CVE-2023-52474, https://www.suse.com/security/cve/CVE-2023-52476, https://www.suse.com/security/cve/CVE-2023-52477, https://www.suse.com/security/cve/CVE-2023-52492, https://www.suse.com/security/cve/CVE-2023-52500, https://www.suse.com/security/cve/CVE-2023-52508, https://www.suse.com/security/cve/CVE-2023-52509, https://www.suse.com/security/cve/CVE-2023-52572, https://www.suse.com/security/cve/CVE-2023-52575, https://www.suse.com/security/cve/CVE-2023-52583, https://www.suse.com/security/cve/CVE-2023-52590, https://www.suse.com/security/cve/CVE-2023-52591, https://www.suse.com/security/cve/CVE-2023-52607, https://www.suse.com/security/cve/CVE-2023-52628, https://www.suse.com/security/cve/CVE-2023-6270, https://www.suse.com/security/cve/CVE-2023-6356, https://www.suse.com/security/cve/CVE-2023-6531, https://www.suse.com/security/cve/CVE-2023-6535, https://www.suse.com/security/cve/CVE-2023-6536, https://www.suse.com/security/cve/CVE-2023-7042, https://www.suse.com/security/cve/CVE-2023-7192, https://www.suse.com/security/cve/CVE-2024-22099, https://www.suse.com/security/cve/CVE-2024-26600, https://www.suse.com/security/cve/CVE-2024-26614, https://www.suse.com/security/cve/CVE-2024-26642, https://www.suse.com/security/cve/CVE-2024-26704, https://www.suse.com/security/cve/CVE-2024-26733
Affected packages
Package
Name: kernel-default
Purl: pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Live%20Patching%2015%20SP3
Affected ranges
Type: ECOSYSTEM
Events:
