FlawAtlas
Search the atlas
SUSE-SU-2021:2415-1 Not scored

Security update for the Linux Kernel

The SUSE Linux Enterprise 15 SP3 kernel was updated to receive various security and bugfixes. Security issues fixed: - CVE-2021-22555: A heap out-of-bounds write was discovered in net/netfilter/x_tables.c (bnc#1188116). - CVE-2021-33909: Extremely large seq buffer allocations in seq_file could lead to buffer underruns and code execution (bsc#1188062). The following non-security bugs were fixed: - usb: dwc3: Fix debugfs creation flow (git-fixes).

Exploit probability Not scored
Published July 20, 2021
Required by Not available
Last source change May 2, 2025

02 / AFFECTED SOFTWARE

Affected packages

SUSE:Linux Enterprise High Availability Extension 15 SP3 kernel-default
SUSE:Linux Enterprise Live Patching 15 SP3 kernel-default
SUSE:Linux Enterprise Live Patching 15 SP3 kernel-livepatch-SLE15-SP3_Update_4
SUSE:Linux Enterprise Module for Basesystem 15 SP3 kernel-64kb
SUSE:Linux Enterprise Module for Basesystem 15 SP3 kernel-default
SUSE:Linux Enterprise Module for Basesystem 15 SP3 kernel-default-base
SUSE:Linux Enterprise Module for Basesystem 15 SP3 kernel-preempt
SUSE:Linux Enterprise Module for Basesystem 15 SP3 kernel-source
SUSE:Linux Enterprise Module for Basesystem 15 SP3 kernel-zfcpdump
SUSE:Linux Enterprise Module for Development Tools 15 SP3 kernel-docs
SUSE:Linux Enterprise Module for Development Tools 15 SP3 kernel-obs-build
SUSE:Linux Enterprise Module for Development Tools 15 SP3 kernel-preempt
SUSE:Linux Enterprise Module for Development Tools 15 SP3 kernel-source
SUSE:Linux Enterprise Module for Development Tools 15 SP3 kernel-syms
SUSE:Linux Enterprise Module for Legacy 15 SP3 kernel-default
SUSE:Linux Enterprise Workstation Extension 15 SP3 kernel-default
SUSE:Linux Enterprise Workstation Extension 15 SP3 kernel-preempt

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities SUSE-SU-2021:2415-1

The SUSE Linux Enterprise 15 SP3 kernel was updated to receive various security and bugfixes. Security issues fixed: - CVE-2021-22555: A heap out-of-bounds write was discovered in net/netfilter/x_tables.c (bnc#1188116). - CVE-2021-33909: Extremely large seq buffer allocations in seq_file could lead to buffer underruns and code execution (bsc#1188062). The following non-security bugs were fixed: - usb: dwc3: Fix debugfs creation flow (git-fixes).

View original source

05 / REFERENCES

Further evidence