SUSE-SU-2022:4035-1

Advisory lineage Upstream: 5 Downstream: 0
Published: 16 Nov 2022, 20:35
Last modified:04 Feb 2026, 02:52

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

16 Nov 2022, 20:35
Published
Vulnerability first disclosed
04 Feb 2026, 02:52
Last Modified
Vulnerability information updated

Description

Security update for the Linux Kernel (Live Patch 1 for SLE 15 SP4) This update for the Linux Kernel 5.14.21-150400_24_11 fixes several issues. The following security issues were fixed: - CVE-2021-33655: Fixed out of bounds write with ioctl FBIOPUT_VSCREENINFO (bnc#1201635). - CVE-2022-1882: Fixed a use-after-free flaw in free_pipe_info() that could allow a local user to crash or potentially escalate their privileges on the system (bsc#1199904). - CVE-2022-2588: Fixed use-after-free in cls_route (bsc#1202096). - CVE-2022-42703: Fixed use-after-free in mm/rmap.c related to leaf anon_vma double reuse (bnc#1204168). - CVE-2022-42722: Fixed crash in beacon protection for P2P-device. (bsc#1204125)

Affected Systems

  • susekernel-livepatch-SLE15-SP4_Update_1&distro=SUSE Linux Enterprise Live Patching 15 SP4

    < 5-150400.2.1

References (11)