drucken bookmarks versenden konfigurieren admin pdf Sicherheit: Mehrere Probleme in Linux
Name: |
Mehrere Probleme in Linux |
|
ID: |
SUSE-SU-2023:2232-1 |
|
Distribution: |
SUSE |
|
Plattformen: |
SUSE Linux Enterprise Live Patching 12-SP4, SUSE OpenStack Cloud 9, SUSE OpenStack Cloud Crowbar 9, SUSE Linux Enterprise Server 12 SP4, SUSE Linux Enterprise Server 12 SP4 ESPOS 12-SP4, SUSE Linux Enterprise High Performance Computing 12 SP4, SUSE Linux Enterprise Server for SAP Applications 12 SP4, SUSE Linux Enterprise Server 12 SP4 LTSS 12-SP4, SUSE Linux Enterprise High Availability Extension 12 SP4 |
|
Datum: |
Mi, 17. Mai 2023, 19:14 |
|
Referenzen: |
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-43945
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1855
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1998
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1990
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-23454
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1390
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-28772
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-0590
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-2124
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-2162
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1670
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-28464
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1076
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-30772
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-23455
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-5753
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-36691
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1611
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-0597
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-2483
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1095
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-3923
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-28328
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1989
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1118
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1513
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-4203
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-20567 |
|
Applikationen: |
Linux |
|
Originalnachricht |
--===============8141418233396941745== Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit
# Security update for the Linux Kernel
Announcement ID: SUSE-SU-2023:2232-1 Rating: important References:
* #1076830 * #1194535 * #1202353 * #1205128 * #1207036 * #1207125 * #1207168 * #1207185 * #1207795 * #1207845 * #1208179 * #1208333 * #1208599 * #1208777 * #1208837 * #1208850 * #1209008 * #1209052 * #1209256 * #1209289 * #1209291 * #1209532 * #1209547 * #1209549 * #1209613 * #1209687 * #1209777 * #1209778 * #1209845 * #1209871 * #1209887 * #1210124 * #1210202 * #1210301 * #1210329 * #1210336 * #1210337 * #1210469 * #1210498 * #1210506 * #1210647 * #1211037
Cross-References:
* CVE-2017-5753 * CVE-2020-36691 * CVE-2021-3923 * CVE-2021-4203 * CVE-2022-20567 * CVE-2022-43945 * CVE-2023-0590 * CVE-2023-0597 * CVE-2023-1076 * CVE-2023-1095 * CVE-2023-1118 * CVE-2023-1390 * CVE-2023-1513 * CVE-2023-1611 * CVE-2023-1670 * CVE-2023-1855 * CVE-2023-1989 * CVE-2023-1990 * CVE-2023-1998 * CVE-2023-2124 * CVE-2023-2162 * CVE-2023-23454 * CVE-2023-23455 * CVE-2023-2483 * CVE-2023-28328 * CVE-2023-28464 * CVE-2023-28772 * CVE-2023-30772
CVSS scores:
* CVE-2017-5753 ( SUSE ): 5.6 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N * CVE-2017-5753 ( SUSE ): 7.1 CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N * CVE-2017-5753 ( NVD ): 5.6 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N * CVE-2017-5753 ( NVD ): 5.6 CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N * CVE-2020-36691 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2020-36691 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2021-3923 ( SUSE ): 3.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N * CVE-2021-3923 ( NVD ): 2.3 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N * CVE-2021-4203 ( SUSE ): 5.8 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:L * CVE-2021-4203 ( NVD ): 6.8 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:H * CVE-2022-20567 ( SUSE ): 6.4 CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H * CVE-2022-20567 ( NVD ): 6.4 CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H * CVE-2022-43945 ( SUSE ): 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2022-43945 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2023-0590 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-0590 ( NVD ): 4.7 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2023-0597 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N * CVE-2023-0597 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N * CVE-2023-1076 ( SUSE ): 4.7 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N * CVE-2023-1076 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N * CVE-2023-1095 ( SUSE ): 5.1 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2023-1095 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2023-1118 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-1118 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-1390 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2023-1390 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2023-1513 ( SUSE ): 3.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L * CVE-2023-1513 ( NVD ): 3.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N * CVE-2023-1611 ( SUSE ): 4.7 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2023-1611 ( NVD ): 6.3 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:H * CVE-2023-1670 ( SUSE ): 4.4 CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:N/I:N/A:H * CVE-2023-1670 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-1855 ( SUSE ): 6.4 CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H * CVE-2023-1855 ( NVD ): 6.3 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:H * CVE-2023-1989 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-1989 ( NVD ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-1990 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-1990 ( NVD ): 4.7 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2023-1998 ( SUSE ): 5.6 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N * CVE-2023-1998 ( NVD ): 5.6 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N * CVE-2023-2124 ( SUSE ): 6.7 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H * CVE-2023-2162 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-2162 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N * CVE-2023-23454 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-23454 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2023-23455 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-23455 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2023-2483 ( SUSE ): 6.4 CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H * CVE-2023-28328 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2023-28328 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2023-28464 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-28464 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-28772 ( SUSE ): 7.4 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2023-28772 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-30772 ( SUSE ): 6.4 CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H * CVE-2023-30772 ( NVD ): 6.4 CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected Products:
* SUSE Linux Enterprise High Availability Extension 12 SP4 * SUSE Linux Enterprise High Performance Computing 12 SP4 * SUSE Linux Enterprise Live Patching 12-SP4 * SUSE Linux Enterprise Server 12 SP4 * SUSE Linux Enterprise Server 12 SP4 ESPOS 12-SP4 * SUSE Linux Enterprise Server 12 SP4 LTSS 12-SP4 * SUSE Linux Enterprise Server for SAP Applications 12 SP4 * SUSE OpenStack Cloud 9 * SUSE OpenStack Cloud Crowbar 9
An update that solves 28 vulnerabilities and has 14 fixes can now be installed.
## Description:
The SUSE Linux Enterprise 12 SP4 kernel was updated to receive various security and bugfixes.
The following security bugs were fixed:
* CVE-2023-2483: Fixed a use after free bug in emac_remove due caused by a race condition (bsc#1211037). * CVE-2023-2124: Fixed an out of bound access in the XFS subsystem that could have lead to denial-of-service or potentially privilege escalation (bsc#1210498). * CVE-2023-1670: Fixed a use after free in the Xircom 16-bit PCMCIA Ethernet driver. A local user could use this flaw to crash the system or potentially escalate their privileges on the system (bsc#1209871). * CVE-2017-5753: Fixed spectre V1 vulnerability on netlink (bsc#1209547). * CVE-2017-5753: Fixed spectre vulnerability in prlimit (bsc#1209256). * CVE-2020-36691: Fixed a denial of service (unbounded recursion) vulnerability via a nested Netlink policy with a back reference (bsc#1209613 bsc#1209777). * CVE-2021-3923: Fixed stack information leak vulnerability that could lead to kernel protection bypass in infiniband RDMA (bsc#1209778). * CVE-2021-4203: Fixed use-after-free read flaw that was found in sock_getsockopt() in net/core/sock.c due to SO_PEERCRED and SO_PEERGROUPS race with listen() (bsc#1194535). * CVE-2022-20567: Fixed use after free that could lead to a local privilege escalation in pppol2tp_create of l2tp_ppp.c (bsc#1208850). * CVE-2022-43945: Fixed a buffer overflow in the NFSD implementation (bsc#1205128). * CVE-2023-0590: Fixed race condition in qdisc_graft() (bsc#1207795). * CVE-2023-0597: Fixed lack of randomization of per-cpu entry area in x86/mm (bsc#1207845). * CVE-2023-1076: Fixed incorrect UID assigned to tun/tap sockets (bsc#1208599). * CVE-2023-1095: Fixed a NULL pointer dereference in nf_tables due to zeroed list head (bsc#1208777). * CVE-2023-1118: Fixed a use-after-free bugs caused by ene_tx_irqsim() in media/rc (bsc#1208837). * CVE-2023-1390: Fixed remote DoS vulnerability in tipc_link_xmit() (bsc#1209289). * CVE-2023-1513: Fixed an uninitialized portions of the kvm_debugregs structure that could be copied to userspace, causing an information leak (bsc#1209532). * CVE-2023-1611: Fixed an use-after-free flaw in btrfs_search_slot (bsc#1209687). * CVE-2023-1855: Fixed an use-after-free flaw in xgene_hwmon_remove (bsc#1210202). * CVE-2023-1989: Fixed an use-after-free flaw in btsdio_remove (bsc#1210336). * CVE-2023-1990: Fixed an use-after-free flaw in ndlc_remove (bsc#1210337). * CVE-2023-1998: Fixed an use-after-free flaw during login when accessing the shost ipaddress (bsc#1210506). * CVE-2023-2162: Fixed an use-after-free flaw in iscsi_sw_tcp_session_create (bsc#1210647). * CVE-2023-23454: Fixed a type-confusion in the CBQ network scheduler (bsc#1207036). * CVE-2023-23455: Fixed a denial of service inside atm_tc_enqueue in net/sched/sch_atm.c because of type confusion (non-negative numbers can sometimes indicate a TC_ACT_SHOT condition rather than valid classification results) (bsc#1207125). * CVE-2023-28328: Fixed a denial of service issue in az6027 driver in drivers/media/usb/dev-usb/az6027.c (bsc#1209291). * CVE-2023-28464: Fixed user-after-free that could lead to privilege escalation in hci_conn_cleanup in net/uetooth/hci_conn.c (bsc#1209052). * CVE-2023-28772: Fixed buffer overflow in seq_buf_putmem_hex in lib/seq_buf.c (bsc#1209549). * CVE-2023-30772: Fixed race condition and resultant use-after-free in da9150_charger_remove (bsc#1210329).
The following non-security bugs were fixed:
* Do not sign the vanilla kernel (bsc#1209008). * Fix kABI breakage (bsc#1208333) * PCI: hv: Add a per-bus mutex state_lock (bsc#1207185). * PCI: hv: Fix a race condition bug in hv_pci_query_relations() (bsc#1207185). * PCI: hv: Fix a race condition in hv_irq_unmask() that can cause panic (bsc#1207185). * PCI: hv: Remove the useless hv_pcichild_state from struct hv_pci_dev (bsc#1207185). * Remove obsolete KMP obsoletes (bsc#1210469). * Replace mkinitrd dependency with dracut (bsc#1202353). * cifs: fix double free in dfs mounts (bsc#1209845). * cifs: fix negotiate context parsing (bsc#1210301). * cifs: handle reconnect of tcon when there is no cached dfs referral (bsc#1209845). * cifs: missing null pointer check in cifs_mount (bsc#1209845). * cifs: serialize all mount attempts (bsc#1209845). * cred: allow get_cred() and put_cred() to be given NULL (bsc#1209887). * ipv6: raw: Deduct extension header length in rawv6_push_pending_frames (bsc#1207168). * k-m-s: Drop Linux 2.6 support * kernel-module-subpackage: Fix expansion with -b parameter (bsc#1208179).
## Special Instructions and Notes:
* Please reboot the system after installing this update.
## Patch Instructions:
To install this SUSE Important update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product:
* SUSE OpenStack Cloud 9 zypper in -t patch SUSE-OpenStack-Cloud-9-2023-2232=1
* SUSE OpenStack Cloud Crowbar 9 zypper in -t patch SUSE-OpenStack-Cloud-Crowbar-9-2023-2232=1
* SUSE Linux Enterprise Server for SAP Applications 12 SP4 zypper in -t patch SUSE-SLE-HA-12-SP4-2023-2232=1 SUSE-SLE- SAP-12-SP4-2023-2232=1
* SUSE Linux Enterprise High Availability Extension 12 SP4 zypper in -t patch SUSE-SLE-HA-12-SP4-2023-2232=1
* SUSE Linux Enterprise Live Patching 12-SP4 zypper in -t patch SUSE-SLE-Live-Patching-12-SP4-2023-2232=1
* SUSE Linux Enterprise Server 12 SP4 ESPOS 12-SP4 zypper in -t patch SUSE-SLE-SERVER-12-SP4-ESPOS-2023-2232=1
* SUSE Linux Enterprise Server 12 SP4 LTSS 12-SP4 zypper in -t patch SUSE-SLE-SERVER-12-SP4-LTSS-2023-2232=1
## Package List:
* SUSE OpenStack Cloud 9 (nosrc x86_64) * kernel-default-4.12.14-95.125.1 * SUSE OpenStack Cloud 9 (x86_64) * kernel-default-base-debuginfo-4.12.14-95.125.1 * kernel-default-base-4.12.14-95.125.1 * kernel-default-devel-debuginfo-4.12.14-95.125.1 * kernel-default-devel-4.12.14-95.125.1 * kernel-default-debuginfo-4.12.14-95.125.1 * kernel-default-debugsource-4.12.14-95.125.1 * kernel-syms-4.12.14-95.125.1 * SUSE OpenStack Cloud 9 (noarch) * kernel-source-4.12.14-95.125.1 * kernel-macros-4.12.14-95.125.1 * kernel-devel-4.12.14-95.125.1 * SUSE OpenStack Cloud Crowbar 9 (nosrc x86_64) * kernel-default-4.12.14-95.125.1 * SUSE OpenStack Cloud Crowbar 9 (x86_64) * kernel-default-base-debuginfo-4.12.14-95.125.1 * kernel-default-base-4.12.14-95.125.1 * kernel-default-devel-debuginfo-4.12.14-95.125.1 * kernel-default-devel-4.12.14-95.125.1 * kernel-default-debuginfo-4.12.14-95.125.1 * kernel-default-debugsource-4.12.14-95.125.1 * kernel-syms-4.12.14-95.125.1 * SUSE OpenStack Cloud Crowbar 9 (noarch) * kernel-source-4.12.14-95.125.1 * kernel-macros-4.12.14-95.125.1 * kernel-devel-4.12.14-95.125.1 * SUSE Linux Enterprise Server for SAP Applications 12 SP4 (ppc64le x86_64) * cluster-md-kmp-default-4.12.14-95.125.1 * gfs2-kmp-default-4.12.14-95.125.1 * kernel-default-base-debuginfo-4.12.14-95.125.1 * kernel-default-base-4.12.14-95.125.1 * ocfs2-kmp-default-debuginfo-4.12.14-95.125.1 * cluster-md-kmp-default-debuginfo-4.12.14-95.125.1 * gfs2-kmp-default-debuginfo-4.12.14-95.125.1 * kernel-default-debuginfo-4.12.14-95.125.1 * kernel-default-devel-4.12.14-95.125.1 * dlm-kmp-default-debuginfo-4.12.14-95.125.1 * dlm-kmp-default-4.12.14-95.125.1 * drbd-debugsource-9.0.14+git.62f906cf-4.26.2 * drbd-9.0.14+git.62f906cf-4.26.2 * kernel-default-debugsource-4.12.14-95.125.1 * drbd-kmp-default-9.0.14+git.62f906cf_k4.12.14_95.125-4.26.2 * ocfs2-kmp-default-4.12.14-95.125.1 * kernel-syms-4.12.14-95.125.1 * drbd-kmp-default-debuginfo-9.0.14+git.62f906cf_k4.12.14_95.125-4.26.2 * SUSE Linux Enterprise Server for SAP Applications 12 SP4 (nosrc ppc64le x86_64) * kernel-default-4.12.14-95.125.1 * SUSE Linux Enterprise Server for SAP Applications 12 SP4 (noarch) * kernel-source-4.12.14-95.125.1 * kernel-macros-4.12.14-95.125.1 * kernel-devel-4.12.14-95.125.1 * SUSE Linux Enterprise Server for SAP Applications 12 SP4 (x86_64) * kernel-default-devel-debuginfo-4.12.14-95.125.1 * SUSE Linux Enterprise High Availability Extension 12 SP4 (ppc64le s390x x86_64) * cluster-md-kmp-default-4.12.14-95.125.1 * gfs2-kmp-default-4.12.14-95.125.1 * ocfs2-kmp-default-debuginfo-4.12.14-95.125.1 * cluster-md-kmp-default-debuginfo-4.12.14-95.125.1 * gfs2-kmp-default-debuginfo-4.12.14-95.125.1 * kernel-default-debuginfo-4.12.14-95.125.1 * dlm-kmp-default-debuginfo-4.12.14-95.125.1 * dlm-kmp-default-4.12.14-95.125.1 * drbd-debugsource-9.0.14+git.62f906cf-4.26.2 * drbd-9.0.14+git.62f906cf-4.26.2 * kernel-default-debugsource-4.12.14-95.125.1 * drbd-kmp-default-9.0.14+git.62f906cf_k4.12.14_95.125-4.26.2 * ocfs2-kmp-default-4.12.14-95.125.1 * drbd-kmp-default-debuginfo-9.0.14+git.62f906cf_k4.12.14_95.125-4.26.2 * SUSE Linux Enterprise High Availability Extension 12 SP4 (nosrc) * kernel-default-4.12.14-95.125.1 * SUSE Linux Enterprise Live Patching 12-SP4 (nosrc) * kernel-default-4.12.14-95.125.1 * SUSE Linux Enterprise Live Patching 12-SP4 (ppc64le s390x x86_64) * kernel-default-kgraft-devel-4.12.14-95.125.1 * kgraft-patch-4_12_14-95_125-default-1-6.5.1 * kernel-default-kgraft-4.12.14-95.125.1 * SUSE Linux Enterprise Server 12 SP4 ESPOS 12-SP4 (aarch64 nosrc x86_64) * kernel-default-4.12.14-95.125.1 * SUSE Linux Enterprise Server 12 SP4 ESPOS 12-SP4 (aarch64 x86_64) * kernel-default-base-debuginfo-4.12.14-95.125.1 * kernel-default-base-4.12.14-95.125.1 * kernel-default-devel-4.12.14-95.125.1 * kernel-default-debuginfo-4.12.14-95.125.1 * kernel-default-debugsource-4.12.14-95.125.1 * kernel-syms-4.12.14-95.125.1 * SUSE Linux Enterprise Server 12 SP4 ESPOS 12-SP4 (noarch) * kernel-source-4.12.14-95.125.1 * kernel-macros-4.12.14-95.125.1 * kernel-devel-4.12.14-95.125.1 * SUSE Linux Enterprise Server 12 SP4 ESPOS 12-SP4 (x86_64) * kernel-default-devel-debuginfo-4.12.14-95.125.1 * SUSE Linux Enterprise Server 12 SP4 LTSS 12-SP4 (aarch64 ppc64le s390x x86_64 nosrc) * kernel-default-4.12.14-95.125.1 * SUSE Linux Enterprise Server 12 SP4 LTSS 12-SP4 (aarch64 ppc64le s390x x86_64) * kernel-default-base-debuginfo-4.12.14-95.125.1 * kernel-default-base-4.12.14-95.125.1 * kernel-default-devel-4.12.14-95.125.1 * kernel-default-debuginfo-4.12.14-95.125.1 * kernel-default-debugsource-4.12.14-95.125.1 * kernel-syms-4.12.14-95.125.1 * SUSE Linux Enterprise Server 12 SP4 LTSS 12-SP4 (noarch) * kernel-source-4.12.14-95.125.1 * kernel-macros-4.12.14-95.125.1 * kernel-devel-4.12.14-95.125.1 * SUSE Linux Enterprise Server 12 SP4 LTSS 12-SP4 (s390x) * kernel-default-man-4.12.14-95.125.1 * SUSE Linux Enterprise Server 12 SP4 LTSS 12-SP4 (x86_64) * kernel-default-devel-debuginfo-4.12.14-95.125.1
## References:
* https://www.suse.com/security/cve/CVE-2017-5753.html * https://www.suse.com/security/cve/CVE-2020-36691.html * https://www.suse.com/security/cve/CVE-2021-3923.html * https://www.suse.com/security/cve/CVE-2021-4203.html * https://www.suse.com/security/cve/CVE-2022-20567.html * https://www.suse.com/security/cve/CVE-2022-43945.html * https://www.suse.com/security/cve/CVE-2023-0590.html * https://www.suse.com/security/cve/CVE-2023-0597.html * https://www.suse.com/security/cve/CVE-2023-1076.html * https://www.suse.com/security/cve/CVE-2023-1095.html * https://www.suse.com/security/cve/CVE-2023-1118.html * https://www.suse.com/security/cve/CVE-2023-1390.html * https://www.suse.com/security/cve/CVE-2023-1513.html * https://www.suse.com/security/cve/CVE-2023-1611.html * https://www.suse.com/security/cve/CVE-2023-1670.html * https://www.suse.com/security/cve/CVE-2023-1855.html * https://www.suse.com/security/cve/CVE-2023-1989.html * https://www.suse.com/security/cve/CVE-2023-1990.html * https://www.suse.com/security/cve/CVE-2023-1998.html * https://www.suse.com/security/cve/CVE-2023-2124.html * https://www.suse.com/security/cve/CVE-2023-2162.html * https://www.suse.com/security/cve/CVE-2023-23454.html * https://www.suse.com/security/cve/CVE-2023-23455.html * https://www.suse.com/security/cve/CVE-2023-2483.html * https://www.suse.com/security/cve/CVE-2023-28328.html * https://www.suse.com/security/cve/CVE-2023-28464.html * https://www.suse.com/security/cve/CVE-2023-28772.html * https://www.suse.com/security/cve/CVE-2023-30772.html * https://bugzilla.suse.com/show_bug.cgi?id=1076830 * https://bugzilla.suse.com/show_bug.cgi?id=1194535 * https://bugzilla.suse.com/show_bug.cgi?id=1202353 * https://bugzilla.suse.com/show_bug.cgi?id=1205128 * https://bugzilla.suse.com/show_bug.cgi?id=1207036 * https://bugzilla.suse.com/show_bug.cgi?id=1207125 * https://bugzilla.suse.com/show_bug.cgi?id=1207168 * https://bugzilla.suse.com/show_bug.cgi?id=1207185 * https://bugzilla.suse.com/show_bug.cgi?id=1207795 * https://bugzilla.suse.com/show_bug.cgi?id=1207845 * https://bugzilla.suse.com/show_bug.cgi?id=1208179 * https://bugzilla.suse.com/show_bug.cgi?id=1208333 * https://bugzilla.suse.com/show_bug.cgi?id=1208599 * https://bugzilla.suse.com/show_bug.cgi?id=1208777 * https://bugzilla.suse.com/show_bug.cgi?id=1208837 * https://bugzilla.suse.com/show_bug.cgi?id=1208850 * https://bugzilla.suse.com/show_bug.cgi?id=1209008 * https://bugzilla.suse.com/show_bug.cgi?id=1209052 * https://bugzilla.suse.com/show_bug.cgi?id=1209256 * https://bugzilla.suse.com/show_bug.cgi?id=1209289 * https://bugzilla.suse.com/show_bug.cgi?id=1209291 * https://bugzilla.suse.com/show_bug.cgi?id=1209532 * https://bugzilla.suse.com/show_bug.cgi?id=1209547 * https://bugzilla.suse.com/show_bug.cgi?id=1209549 * https://bugzilla.suse.com/show_bug.cgi?id=1209613 * https://bugzilla.suse.com/show_bug.cgi?id=1209687 * https://bugzilla.suse.com/show_bug.cgi?id=1209777 * https://bugzilla.suse.com/show_bug.cgi?id=1209778 * https://bugzilla.suse.com/show_bug.cgi?id=1209845 * https://bugzilla.suse.com/show_bug.cgi?id=1209871 * https://bugzilla.suse.com/show_bug.cgi?id=1209887 * https://bugzilla.suse.com/show_bug.cgi?id=1210124 * https://bugzilla.suse.com/show_bug.cgi?id=1210202 * https://bugzilla.suse.com/show_bug.cgi?id=1210301 * https://bugzilla.suse.com/show_bug.cgi?id=1210329 * https://bugzilla.suse.com/show_bug.cgi?id=1210336 * https://bugzilla.suse.com/show_bug.cgi?id=1210337 * https://bugzilla.suse.com/show_bug.cgi?id=1210469 * https://bugzilla.suse.com/show_bug.cgi?id=1210498 * https://bugzilla.suse.com/show_bug.cgi?id=1210506 * https://bugzilla.suse.com/show_bug.cgi?id=1210647 * https://bugzilla.suse.com/show_bug.cgi?id=1211037
--===============8141418233396941745== Content-Type: text/html; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit
<div class="container"> <h1>Security update for the Linux Kernel</h1>
<table class="table table-striped table-bordered"> <tbody> <tr> <th>Announcement ID:</th> <td>SUSE-SU-2023:2232-1</td> </tr> <tr> <th>Rating:</th> <td>important</td> </tr> <tr> <th>References:</th> <td> <ul> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1076830">#1076830</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1194535">#1194535</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1202353">#1202353</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1205128">#1205128</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1207036">#1207036</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1207125">#1207125</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1207168">#1207168</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1207185">#1207185</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1207795">#1207795</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1207845">#1207845</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1208179">#1208179</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1208333">#1208333</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1208599">#1208599</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1208777">#1208777</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1208837">#1208837</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1208850">#1208850</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209008">#1209008</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209052">#1209052</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209256">#1209256</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209289">#1209289</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209291">#1209291</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209532">#1209532</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209547">#1209547</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209549">#1209549</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209613">#1209613</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209687">#1209687</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209777">#1209777</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209778">#1209778</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209845">#1209845</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209871">#1209871</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209887">#1209887</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1210124">#1210124</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1210202">#1210202</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1210301">#1210301</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1210329">#1210329</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1210336">#1210336</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1210337">#1210337</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1210469">#1210469</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1210498">#1210498</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1210506">#1210506</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1210647">#1210647</a> </li> <li style="display: inline;"> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1211037">#1211037</a> </li> </ul> </td> </tr> <tr> <th> Cross-References: </th> <td> <ul> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2017-5753.html">CVE-2017-5753</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2020-36691.html">CVE-2020-36691</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2021-3923.html">CVE-2021-3923</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2021-4203.html">CVE-2021-4203</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2022-20567.html">CVE-2022-20567</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2022-43945.html">CVE-2022-43945</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2023-0590.html">CVE-2023-0590</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2023-0597.html">CVE-2023-0597</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2023-1076.html">CVE-2023-1076</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2023-1095.html">CVE-2023-1095</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2023-1118.html">CVE-2023-1118</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2023-1390.html">CVE-2023-1390</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2023-1513.html">CVE-2023-1513</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2023-1611.html">CVE-2023-1611</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2023-1670.html">CVE-2023-1670</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2023-1855.html">CVE-2023-1855</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2023-1989.html">CVE-2023-1989</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2023-1990.html">CVE-2023-1990</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2023-1998.html">CVE-2023-1998</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2023-2124.html">CVE-2023-2124</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2023-2162.html">CVE-2023-2162</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2023-23454.html">CVE-2023-23454</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2023-23455.html">CVE-2023-23455</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2023-2483.html">CVE-2023-2483</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2023-28328.html">CVE-2023-28328</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2023-28464.html">CVE-2023-28464</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2023-28772.html">CVE-2023-28772</a> </li> <li style="display: inline;"> <a href="https://www.suse.com/security/cve/CVE-2023-30772.html">CVE-2023-30772</a> </li> </ul> </td> </tr> <tr> <th>CVSS scores:</th> <td> <ul class="list-group"> <li class="list-group-item"> <span class="cvss-reference">CVE-2017-5753</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">5.6</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2017-5753</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">7.1</span> <span class="cvss-vector">CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2017-5753</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">5.6</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2017-5753</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">5.6</span> <span class="cvss-vector">CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2020-36691</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">5.9</span> <span class="cvss-vector">CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2020-36691</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">5.5</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2021-3923</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">3.3</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2021-3923</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">2.3</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2021-4203</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">5.8</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:L</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2021-4203</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">6.8</span> <span class="cvss-vector">CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2022-20567</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">6.4</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2022-20567</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">6.4</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2022-43945</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">8.8</span> <span class="cvss-vector">CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2022-43945</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">7.5</span> <span class="cvss-vector">CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-0590</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">7.0</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-0590</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">4.7</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-0597</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">5.5</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-0597</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">5.5</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-1076</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">4.7</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-1076</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">5.5</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-1095</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">5.1</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-1095</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">5.5</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-1118</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">7.0</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-1118</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">7.8</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-1390</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">7.5</span> <span class="cvss-vector">CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-1390</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">7.5</span> <span class="cvss-vector">CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-1513</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">3.3</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-1513</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">3.3</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-1611</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">4.7</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-1611</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">6.3</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-1670</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">4.4</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:N/I:N/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-1670</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">7.8</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-1855</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">6.4</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-1855</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">6.3</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-1989</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">7.8</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-1989</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">7.0</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-1990</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">7.0</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-1990</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">4.7</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-1998</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">5.6</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-1998</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">5.6</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-2124</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">6.7</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-2162</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">7.0</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-2162</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">5.5</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-23454</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">7.8</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-23454</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">5.5</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-23455</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">7.8</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-23455</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">5.5</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-2483</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">6.4</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-28328</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">5.5</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-28328</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">5.5</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-28464</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">7.8</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-28464</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">7.8</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-28772</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">7.4</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-28772</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">7.8</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-30772</span> <span class="cvss-source"> ( SUSE ): </span> <span class="cvss-score">6.4</span> <span class="cvss-vector">CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H</span> </li> <li class="list-group-item"> <span class="cvss-reference">CVE-2023-30772</span> <span class="cvss-source"> ( NVD ): </span> <span class="cvss-score">6.4</span> <span class="cvss-vector">CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H</span> </li> </ul> </td> </tr> <tr> <th>Affected Products:</th> <td> <ul class="list-group"> <li class="list-group-item">SUSE Linux Enterprise High Availability Extension 12 SP4</li> <li class="list-group-item">SUSE Linux Enterprise High Performance Computing 12 SP4</li> <li class="list-group-item">SUSE Linux Enterprise Live Patching 12-SP4</li> <li class="list-group-item">SUSE Linux Enterprise Server 12 SP4</li> <li class="list-group-item">SUSE Linux Enterprise Server 12 SP4 ESPOS 12-SP4</li> <li class="list-group-item">SUSE Linux Enterprise Server 12 SP4 LTSS 12-SP4</li> <li class="list-group-item">SUSE Linux Enterprise Server for SAP Applications 12 SP4</li> <li class="list-group-item">SUSE OpenStack Cloud 9</li> <li class="list-group-item">SUSE OpenStack Cloud Crowbar 9</li> </ul> </td> </tr> </tbody> </table>
<p>An update that solves 28 vulnerabilities and has 14 fixes can now be installed.</p>
<h2>Description:</h2> <p>The SUSE Linux Enterprise 12 SP4 kernel was updated to receive various security and bugfixes.</p> <p>The following security bugs were fixed:</p> <ul> <li>CVE-2023-2483: Fixed a use after free bug in emac_remove due caused by a race condition (bsc#1211037).</li> <li>CVE-2023-2124: Fixed an out of bound access in the XFS subsystem that could have lead to denial-of-service or potentially privilege escalation (bsc#1210498).</li> <li>CVE-2023-1670: Fixed a use after free in the Xircom 16-bit PCMCIA Ethernet driver. A local user could use this flaw to crash the system or potentially escalate their privileges on the system (bsc#1209871).</li> <li>CVE-2017-5753: Fixed spectre V1 vulnerability on netlink (bsc#1209547).</li> <li>CVE-2017-5753: Fixed spectre vulnerability in prlimit (bsc#1209256).</li> <li>CVE-2020-36691: Fixed a denial of service (unbounded recursion) vulnerability via a nested Netlink policy with a back reference (bsc#1209613 bsc#1209777).</li> <li>CVE-2021-3923: Fixed stack information leak vulnerability that could lead to kernel protection bypass in infiniband RDMA (bsc#1209778).</li> <li>CVE-2021-4203: Fixed use-after-free read flaw that was found in sock_getsockopt() in net/core/sock.c due to SO_PEERCRED and SO_PEERGROUPS race with listen() (bsc#1194535).</li> <li>CVE-2022-20567: Fixed use after free that could lead to a local privilege escalation in pppol2tp_create of l2tp_ppp.c (bsc#1208850).</li> <li>CVE-2022-43945: Fixed a buffer overflow in the NFSD implementation (bsc#1205128).</li> <li>CVE-2023-0590: Fixed race condition in qdisc_graft() (bsc#1207795).</li> <li>CVE-2023-0597: Fixed lack of randomization of per-cpu entry area in x86/mm (bsc#1207845).</li> <li>CVE-2023-1076: Fixed incorrect UID assigned to tun/tap sockets (bsc#1208599).</li> <li>CVE-2023-1095: Fixed a NULL pointer dereference in nf_tables due to zeroed list head (bsc#1208777).</li> <li>CVE-2023-1118: Fixed a use-after-free bugs caused by ene_tx_irqsim() in media/rc (bsc#1208837).</li> <li>CVE-2023-1390: Fixed remote DoS vulnerability in tipc_link_xmit() (bsc#1209289).</li> <li>CVE-2023-1513: Fixed an uninitialized portions of the kvm_debugregs structure that could be copied to userspace, causing an information leak (bsc#1209532).</li> <li>CVE-2023-1611: Fixed an use-after-free flaw in btrfs_search_slot (bsc#1209687).</li> <li>CVE-2023-1855: Fixed an use-after-free flaw in xgene_hwmon_remove (bsc#1210202).</li> <li>CVE-2023-1989: Fixed an use-after-free flaw in btsdio_remove (bsc#1210336).</li> <li>CVE-2023-1990: Fixed an use-after-free flaw in ndlc_remove (bsc#1210337).</li> <li>CVE-2023-1998: Fixed an use-after-free flaw during login when accessing the shost ipaddress (bsc#1210506).</li> <li>CVE-2023-2162: Fixed an use-after-free flaw in iscsi_sw_tcp_session_create (bsc#1210647).</li> <li>CVE-2023-23454: Fixed a type-confusion in the CBQ network scheduler (bsc#1207036).</li> <li>CVE-2023-23455: Fixed a denial of service inside atm_tc_enqueue in net/sched/sch_atm.c because of type confusion (non-negative numbers can sometimes indicate a TC_ACT_SHOT condition rather than valid classification results) (bsc#1207125).</li> <li>CVE-2023-28328: Fixed a denial of service issue in az6027 driver in drivers/media/usb/dev-usb/az6027.c (bsc#1209291).</li> <li>CVE-2023-28464: Fixed user-after-free that could lead to privilege escalation in hci_conn_cleanup in net/uetooth/hci_conn.c (bsc#1209052).</li> <li>CVE-2023-28772: Fixed buffer overflow in seq_buf_putmem_hex in lib/seq_buf.c (bsc#1209549).</li> <li>CVE-2023-30772: Fixed race condition and resultant use-after-free in da9150_charger_remove (bsc#1210329).</li> </ul> <p>The following non-security bugs were fixed:</p> <ul> <li>Do not sign the vanilla kernel (bsc#1209008).</li> <li>Fix kABI breakage (bsc#1208333)</li> <li>PCI: hv: Add a per-bus mutex state_lock (bsc#1207185).</li> <li>PCI: hv: Fix a race condition bug in hv_pci_query_relations() (bsc#1207185).</li> <li>PCI: hv: Fix a race condition in hv_irq_unmask() that can cause panic (bsc#1207185).</li> <li>PCI: hv: Remove the useless hv_pcichild_state from struct hv_pci_dev (bsc#1207185).</li> <li>Remove obsolete KMP obsoletes (bsc#1210469).</li> <li>Replace mkinitrd dependency with dracut (bsc#1202353).</li> <li>cifs: fix double free in dfs mounts (bsc#1209845).</li> <li>cifs: fix negotiate context parsing (bsc#1210301).</li> <li>cifs: handle reconnect of tcon when there is no cached dfs referral (bsc#1209845).</li> <li>cifs: missing null pointer check in cifs_mount (bsc#1209845).</li> <li>cifs: serialize all mount attempts (bsc#1209845).</li> <li>cred: allow get_cred() and put_cred() to be given NULL (bsc#1209887).</li> <li>ipv6: raw: Deduct extension header length in rawv6_push_pending_frames (bsc#1207168).</li> <li>k-m-s: Drop Linux 2.6 support</li> <li>kernel-module-subpackage: Fix expansion with -b parameter (bsc#1208179).</li> </ul>
<h2>Special Instructions and Notes:</h2> <ul> <li>Please reboot the system after installing this update.</li> </ul>
<h2>Patch Instructions:</h2> <p> To install this SUSE Important update use the SUSE recommended installation methods like YaST online_update or "zypper patch".<br/>
Alternatively you can run the command listed for your product: </p> <ul class="list-group"> <li class="list-group-item"> SUSE OpenStack Cloud 9 <br/> <code>zypper in -t patch SUSE-OpenStack-Cloud-9-2023-2232=1</code> </li> <li class="list-group-item"> SUSE OpenStack Cloud Crowbar 9 <br/> <code>zypper in -t patch SUSE-OpenStack-Cloud-Crowbar-9-2023-2232=1</code> </li> <li class="list-group-item"> SUSE Linux Enterprise Server for SAP Applications 12 SP4 <br/> <code>zypper in -t patch SUSE-SLE-HA-12-SP4-2023-2232=1 SUSE-SLE-SAP-12-SP4-2023-2232=1</code> </li> <li class="list-group-item"> SUSE Linux Enterprise High Availability Extension 12 SP4 <br/> <code>zypper in -t patch SUSE-SLE-HA-12-SP4-2023-2232=1</code> </li> <li class="list-group-item"> SUSE Linux Enterprise Live Patching 12-SP4 <br/> <code>zypper in -t patch SUSE-SLE-Live-Patching-12-SP4-2023-2232=1</code> </li> <li class="list-group-item"> SUSE Linux Enterprise Server 12 SP4 ESPOS 12-SP4 <br/> <code>zypper in -t patch SUSE-SLE-SERVER-12-SP4-ESPOS-2023-2232=1</code> </li> <li class="list-group-item"> SUSE Linux Enterprise Server 12 SP4 LTSS 12-SP4 <br/> <code>zypper in -t patch SUSE-SLE-SERVER-12-SP4-LTSS-2023-2232=1</code> </li> </ul>
<h2>Package List:</h2> <ul> <li> SUSE OpenStack Cloud 9 (nosrc x86_64) <ul> <li>kernel-default-4.12.14-95.125.1</li> </ul> </li> <li> SUSE OpenStack Cloud 9 (x86_64) <ul> <li>kernel-default-base-debuginfo-4.12.14-95.125.1</li> <li>kernel-default-base-4.12.14-95.125.1</li> <li>kernel-default-devel-debuginfo-4.12.14-95.125.1</li> <li>kernel-default-devel-4.12.14-95.125.1</li> <li>kernel-default-debuginfo-4.12.14-95.125.1</li> <li>kernel-default-debugsource-4.12.14-95.125.1</li> <li>kernel-syms-4.12.14-95.125.1</li> </ul> </li> <li> SUSE OpenStack Cloud 9 (noarch) <ul> <li>kernel-source-4.12.14-95.125.1</li> <li>kernel-macros-4.12.14-95.125.1</li> <li>kernel-devel-4.12.14-95.125.1</li> </ul> </li> <li> SUSE OpenStack Cloud Crowbar 9 (nosrc x86_64) <ul> <li>kernel-default-4.12.14-95.125.1</li> </ul> </li> <li> SUSE OpenStack Cloud Crowbar 9 (x86_64) <ul> <li>kernel-default-base-debuginfo-4.12.14-95.125.1</li> <li>kernel-default-base-4.12.14-95.125.1</li> <li>kernel-default-devel-debuginfo-4.12.14-95.125.1</li> <li>kernel-default-devel-4.12.14-95.125.1</li> <li>kernel-default-debuginfo-4.12.14-95.125.1</li> <li>kernel-default-debugsource-4.12.14-95.125.1</li> <li>kernel-syms-4.12.14-95.125.1</li> </ul> </li> <li> SUSE OpenStack Cloud Crowbar 9 (noarch) <ul> <li>kernel-source-4.12.14-95.125.1</li> <li>kernel-macros-4.12.14-95.125.1</li> <li>kernel-devel-4.12.14-95.125.1</li> </ul> </li> <li> SUSE Linux Enterprise Server for SAP Applications 12 SP4 (ppc64le x86_64) <ul> <li>cluster-md-kmp-default-4.12.14-95.125.1</li> <li>gfs2-kmp-default-4.12.14-95.125.1</li> <li>kernel-default-base-debuginfo-4.12.14-95.125.1</li> <li>kernel-default-base-4.12.14-95.125.1</li> <li>ocfs2-kmp-default-debuginfo-4.12.14-95.125.1</li> <li>cluster-md-kmp-default-debuginfo-4.12.14-95.125.1</li> <li>gfs2-kmp-default-debuginfo-4.12.14-95.125.1</li> <li>kernel-default-debuginfo-4.12.14-95.125.1</li> <li>kernel-default-devel-4.12.14-95.125.1</li> <li>dlm-kmp-default-debuginfo-4.12.14-95.125.1</li> <li>dlm-kmp-default-4.12.14-95.125.1</li> <li>drbd-debugsource-9.0.14+git.62f906cf-4.26.2</li> <li>drbd-9.0.14+git.62f906cf-4.26.2</li> <li>kernel-default-debugsource-4.12.14-95.125.1</li> <li>drbd-kmp-default-9.0.14+git.62f906cf_k4.12.14_95.125-4.26.2</li> <li>ocfs2-kmp-default-4.12.14-95.125.1</li> <li>kernel-syms-4.12.14-95.125.1</li> <li>drbd-kmp-default-debuginfo-9.0.14+git.62f906cf_k4.12.14_95.125-4.26.2</li> </ul> </li> <li> SUSE Linux Enterprise Server for SAP Applications 12 SP4 (nosrc ppc64le x86_64) <ul> <li>kernel-default-4.12.14-95.125.1</li> </ul> </li> <li> SUSE Linux Enterprise Server for SAP Applications 12 SP4 (noarch) <ul> <li>kernel-source-4.12.14-95.125.1</li> <li>kernel-macros-4.12.14-95.125.1</li> <li>kernel-devel-4.12.14-95.125.1</li> </ul> </li> <li> SUSE Linux Enterprise Server for SAP Applications 12 SP4 (x86_64) <ul> <li>kernel-default-devel-debuginfo-4.12.14-95.125.1</li> </ul> </li> <li> SUSE Linux Enterprise High Availability Extension 12 SP4 (ppc64le s390x x86_64) <ul> <li>cluster-md-kmp-default-4.12.14-95.125.1</li> <li>gfs2-kmp-default-4.12.14-95.125.1</li> <li>ocfs2-kmp-default-debuginfo-4.12.14-95.125.1</li> <li>cluster-md-kmp-default-debuginfo-4.12.14-95.125.1</li> <li>gfs2-kmp-default-debuginfo-4.12.14-95.125.1</li> <li>kernel-default-debuginfo-4.12.14-95.125.1</li> <li>dlm-kmp-default-debuginfo-4.12.14-95.125.1</li> <li>dlm-kmp-default-4.12.14-95.125.1</li> <li>drbd-debugsource-9.0.14+git.62f906cf-4.26.2</li> <li>drbd-9.0.14+git.62f906cf-4.26.2</li> <li>kernel-default-debugsource-4.12.14-95.125.1</li> <li>drbd-kmp-default-9.0.14+git.62f906cf_k4.12.14_95.125-4.26.2</li> <li>ocfs2-kmp-default-4.12.14-95.125.1</li> <li>drbd-kmp-default-debuginfo-9.0.14+git.62f906cf_k4.12.14_95.125-4.26.2</li> </ul> </li> <li> SUSE Linux Enterprise High Availability Extension 12 SP4 (nosrc) <ul> <li>kernel-default-4.12.14-95.125.1</li> </ul> </li> <li> SUSE Linux Enterprise Live Patching 12-SP4 (nosrc) <ul> <li>kernel-default-4.12.14-95.125.1</li> </ul> </li> <li> SUSE Linux Enterprise Live Patching 12-SP4 (ppc64le s390x x86_64) <ul> <li>kernel-default-kgraft-devel-4.12.14-95.125.1</li> <li>kgraft-patch-4_12_14-95_125-default-1-6.5.1</li> <li>kernel-default-kgraft-4.12.14-95.125.1</li> </ul> </li> <li> SUSE Linux Enterprise Server 12 SP4 ESPOS 12-SP4 (aarch64 nosrc x86_64) <ul> <li>kernel-default-4.12.14-95.125.1</li> </ul> </li> <li> SUSE Linux Enterprise Server 12 SP4 ESPOS 12-SP4 (aarch64 x86_64) <ul> <li>kernel-default-base-debuginfo-4.12.14-95.125.1</li> <li>kernel-default-base-4.12.14-95.125.1</li> <li>kernel-default-devel-4.12.14-95.125.1</li> <li>kernel-default-debuginfo-4.12.14-95.125.1</li> <li>kernel-default-debugsource-4.12.14-95.125.1</li> <li>kernel-syms-4.12.14-95.125.1</li> </ul> </li> <li> SUSE Linux Enterprise Server 12 SP4 ESPOS 12-SP4 (noarch) <ul> <li>kernel-source-4.12.14-95.125.1</li> <li>kernel-macros-4.12.14-95.125.1</li> <li>kernel-devel-4.12.14-95.125.1</li> </ul> </li> <li> SUSE Linux Enterprise Server 12 SP4 ESPOS 12-SP4 (x86_64) <ul> <li>kernel-default-devel-debuginfo-4.12.14-95.125.1</li> </ul> </li> <li> SUSE Linux Enterprise Server 12 SP4 LTSS 12-SP4 (aarch64 ppc64le s390x x86_64 nosrc) <ul> <li>kernel-default-4.12.14-95.125.1</li> </ul> </li> <li> SUSE Linux Enterprise Server 12 SP4 LTSS 12-SP4 (aarch64 ppc64le s390x x86_64) <ul> <li>kernel-default-base-debuginfo-4.12.14-95.125.1</li> <li>kernel-default-base-4.12.14-95.125.1</li> <li>kernel-default-devel-4.12.14-95.125.1</li> <li>kernel-default-debuginfo-4.12.14-95.125.1</li> <li>kernel-default-debugsource-4.12.14-95.125.1</li> <li>kernel-syms-4.12.14-95.125.1</li> </ul> </li> <li> SUSE Linux Enterprise Server 12 SP4 LTSS 12-SP4 (noarch) <ul> <li>kernel-source-4.12.14-95.125.1</li> <li>kernel-macros-4.12.14-95.125.1</li> <li>kernel-devel-4.12.14-95.125.1</li> </ul> </li> <li> SUSE Linux Enterprise Server 12 SP4 LTSS 12-SP4 (s390x) <ul> <li>kernel-default-man-4.12.14-95.125.1</li> </ul> </li> <li> SUSE Linux Enterprise Server 12 SP4 LTSS 12-SP4 (x86_64) <ul> <li>kernel-default-devel-debuginfo-4.12.14-95.125.1</li> </ul> </li> </ul>
<h2>References:</h2> <ul> <li> <a href="https://www.suse.com/security/cve/CVE-2017-5753.html">https://www.suse.com/security/cve/CVE-2017-5753.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2020-36691.html">https://www.suse.com/security/cve/CVE-2020-36691.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2021-3923.html">https://www.suse.com/security/cve/CVE-2021-3923.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2021-4203.html">https://www.suse.com/security/cve/CVE-2021-4203.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2022-20567.html">https://www.suse.com/security/cve/CVE-2022-20567.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2022-43945.html">https://www.suse.com/security/cve/CVE-2022-43945.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2023-0590.html">https://www.suse.com/security/cve/CVE-2023-0590.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2023-0597.html">https://www.suse.com/security/cve/CVE-2023-0597.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2023-1076.html">https://www.suse.com/security/cve/CVE-2023-1076.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2023-1095.html">https://www.suse.com/security/cve/CVE-2023-1095.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2023-1118.html">https://www.suse.com/security/cve/CVE-2023-1118.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2023-1390.html">https://www.suse.com/security/cve/CVE-2023-1390.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2023-1513.html">https://www.suse.com/security/cve/CVE-2023-1513.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2023-1611.html">https://www.suse.com/security/cve/CVE-2023-1611.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2023-1670.html">https://www.suse.com/security/cve/CVE-2023-1670.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2023-1855.html">https://www.suse.com/security/cve/CVE-2023-1855.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2023-1989.html">https://www.suse.com/security/cve/CVE-2023-1989.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2023-1990.html">https://www.suse.com/security/cve/CVE-2023-1990.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2023-1998.html">https://www.suse.com/security/cve/CVE-2023-1998.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2023-2124.html">https://www.suse.com/security/cve/CVE-2023-2124.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2023-2162.html">https://www.suse.com/security/cve/CVE-2023-2162.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2023-23454.html">https://www.suse.com/security/cve/CVE-2023-23454.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2023-23455.html">https://www.suse.com/security/cve/CVE-2023-23455.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2023-2483.html">https://www.suse.com/security/cve/CVE-2023-2483.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2023-28328.html">https://www.suse.com/security/cve/CVE-2023-28328.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2023-28464.html">https://www.suse.com/security/cve/CVE-2023-28464.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2023-28772.html">https://www.suse.com/security/cve/CVE-2023-28772.html</a> </li> <li> <a href="https://www.suse.com/security/cve/CVE-2023-30772.html">https://www.suse.com/security/cve/CVE-2023-30772.html</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1076830">https://bugzilla.suse.com/show_bug.cgi?id=1076830</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1194535">https://bugzilla.suse.com/show_bug.cgi?id=1194535</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1202353">https://bugzilla.suse.com/show_bug.cgi?id=1202353</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1205128">https://bugzilla.suse.com/show_bug.cgi?id=1205128</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1207036">https://bugzilla.suse.com/show_bug.cgi?id=1207036</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1207125">https://bugzilla.suse.com/show_bug.cgi?id=1207125</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1207168">https://bugzilla.suse.com/show_bug.cgi?id=1207168</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1207185">https://bugzilla.suse.com/show_bug.cgi?id=1207185</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1207795">https://bugzilla.suse.com/show_bug.cgi?id=1207795</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1207845">https://bugzilla.suse.com/show_bug.cgi?id=1207845</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1208179">https://bugzilla.suse.com/show_bug.cgi?id=1208179</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1208333">https://bugzilla.suse.com/show_bug.cgi?id=1208333</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1208599">https://bugzilla.suse.com/show_bug.cgi?id=1208599</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1208777">https://bugzilla.suse.com/show_bug.cgi?id=1208777</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1208837">https://bugzilla.suse.com/show_bug.cgi?id=1208837</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1208850">https://bugzilla.suse.com/show_bug.cgi?id=1208850</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209008">https://bugzilla.suse.com/show_bug.cgi?id=1209008</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209052">https://bugzilla.suse.com/show_bug.cgi?id=1209052</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209256">https://bugzilla.suse.com/show_bug.cgi?id=1209256</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209289">https://bugzilla.suse.com/show_bug.cgi?id=1209289</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209291">https://bugzilla.suse.com/show_bug.cgi?id=1209291</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209532">https://bugzilla.suse.com/show_bug.cgi?id=1209532</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209547">https://bugzilla.suse.com/show_bug.cgi?id=1209547</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209549">https://bugzilla.suse.com/show_bug.cgi?id=1209549</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209613">https://bugzilla.suse.com/show_bug.cgi?id=1209613</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209687">https://bugzilla.suse.com/show_bug.cgi?id=1209687</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209777">https://bugzilla.suse.com/show_bug.cgi?id=1209777</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209778">https://bugzilla.suse.com/show_bug.cgi?id=1209778</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209845">https://bugzilla.suse.com/show_bug.cgi?id=1209845</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209871">https://bugzilla.suse.com/show_bug.cgi?id=1209871</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1209887">https://bugzilla.suse.com/show_bug.cgi?id=1209887</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1210124">https://bugzilla.suse.com/show_bug.cgi?id=1210124</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1210202">https://bugzilla.suse.com/show_bug.cgi?id=1210202</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1210301">https://bugzilla.suse.com/show_bug.cgi?id=1210301</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1210329">https://bugzilla.suse.com/show_bug.cgi?id=1210329</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1210336">https://bugzilla.suse.com/show_bug.cgi?id=1210336</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1210337">https://bugzilla.suse.com/show_bug.cgi?id=1210337</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1210469">https://bugzilla.suse.com/show_bug.cgi?id=1210469</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1210498">https://bugzilla.suse.com/show_bug.cgi?id=1210498</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1210506">https://bugzilla.suse.com/show_bug.cgi?id=1210506</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1210647">https://bugzilla.suse.com/show_bug.cgi?id=1210647</a> </li> <li> <a href="https://bugzilla.suse.com/show_bug.cgi?id=1211037">https://bugzilla.suse.com/show_bug.cgi?id=1211037</a> </li> </ul> </div>
--===============8141418233396941745==--
|
|
|
|