SUSE-SU-2022:4035-1
Advisory lineage Upstream: 5 Downstream: 0
Published: 16 Nov 2022, 20:35
Last modified:04 Feb 2026, 02:52
Vulnerability Summary
Overall Risk (default)
minimal
0/100 CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected
Timeline
16 Nov 2022, 20:35
Published
Vulnerability first disclosed
04 Feb 2026, 02:52
Last Modified
Vulnerability information updated
Description
Security update for the Linux Kernel (Live Patch 1 for SLE 15 SP4) This update for the Linux Kernel 5.14.21-150400_24_11 fixes several issues. The following security issues were fixed: - CVE-2021-33655: Fixed out of bounds write with ioctl FBIOPUT_VSCREENINFO (bnc#1201635). - CVE-2022-1882: Fixed a use-after-free flaw in free_pipe_info() that could allow a local user to crash or potentially escalate their privileges on the system (bsc#1199904). - CVE-2022-2588: Fixed use-after-free in cls_route (bsc#1202096). - CVE-2022-42703: Fixed use-after-free in mm/rmap.c related to leaf anon_vma double reuse (bnc#1204168). - CVE-2022-42722: Fixed crash in beacon protection for P2P-device. (bsc#1204125)
Affected Systems
- suse•kernel-livepatch-SLE15-SP4_Update_1&distro=SUSE Linux Enterprise Live Patching 15 SP4
< 5-150400.2.1
References (11)
- https://www.suse.com/support/update/announcement/2022/suse-su-20224035-1/
- https://bugzilla.suse.com/1200058
- https://bugzilla.suse.com/1202087
- https://bugzilla.suse.com/1203613
- https://bugzilla.suse.com/1204170
- https://bugzilla.suse.com/1204289
- https://www.suse.com/security/cve/CVE-2021-33655
- https://www.suse.com/security/cve/CVE-2022-1882
- https://www.suse.com/security/cve/CVE-2022-2588
- https://www.suse.com/security/cve/CVE-2022-42703
- https://www.suse.com/security/cve/CVE-2022-42722