SUSE-SU-2024:3563-1

Advisory lineage Upstream: 9 Downstream: 0
Published: 09 Oct 2024, 09:04
Last modified:02 May 2025, 04:34

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

09 Oct 2024, 09:04
Published
Vulnerability first disclosed
02 May 2025, 04:34
Last Modified
Vulnerability information updated

Description

Security update for the Linux Kernel The SUSE Linux Enterprise 15 SP4 RT kernel was updated to receive various security bugfixes. The following security bugs were fixed: - CVE-2022-48911: kabi: add __nf_queue_get_refs() for kabi compliance. (bsc#1229633). - CVE-2022-48923: btrfs: prevent copying too big compressed lzo segment (bsc#1229662) - CVE-2024-42301: Fix the array out-of-bounds risk (bsc#1229407). - CVE-2024-44946: kcm: Serialise kcm_sendmsg() for the same socket (bsc#1230015). - CVE-2024-45021: memcg_write_event_control(): fix a user-triggerable oops (bsc#1230434). - CVE-2024-46674: usb: dwc3: st: fix probed platform device ref count on probe error path (bsc#1230507). The following non-security bugs were fixed: - SUNRPC: avoid soft lockup when transmitting UDP to reachable server (bsc#1225272 bsc#1231016). - blk-mq: add helper for checking if one CPU is mapped to specified hctx (bsc#1223600). - blk-mq: do not schedule block kworker on isolated CPUs (bsc#1223600). - kabi: add __nf_queue_get_refs() for kabi compliance. - scsi: ibmvfc: Add max_sectors module parameter (bsc#1216223). - scsi: smartpqi: Expose SAS address for SATA drives (bsc#1223958).

Affected Systems

  • susekernel-rt&distro=SUSE Linux Enterprise Micro 5.3

    < 5.14.21-150400.15.97.1

  • susekernel-rt&distro=SUSE Linux Enterprise Micro 5.4

    < 5.14.21-150400.15.97.1

  • susekernel-source-rt&distro=SUSE Linux Enterprise Micro 5.3

    < 5.14.21-150400.15.97.1

  • susekernel-source-rt&distro=SUSE Linux Enterprise Micro 5.4

    < 5.14.21-150400.15.97.1

References (25)