Security update for the Linux Kernel (Live Patch 2 for SLE 15 SP3)
This update for the Linux Kernel 5.3.18-59_10 fixes several issues. The following security issues were fixed: - CVE-2022-0516: Fixed KVM s390 return error on SIDA memop on normal guest (bsc#1195947). - CVE-2021-0920: Fixed a local privilege escalation due to an use after free bug in unix_gc (bsc#1194463). - CVE-2021-22600: Fixed double free bug in packet_set_ring() in net/packet/af_packet.c that could have been exploited by a local user through crafted syscalls to escalate privileges or deny service (bsc#1195307).
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
This update for the Linux Kernel 5.3.18-59_10 fixes several issues. The following security issues were fixed: - CVE-2022-0516: Fixed KVM s390 return error on SIDA memop on normal guest (bsc#1195947). - CVE-2021-0920: Fixed a local privilege escalation due to an use after free bug in unix_gc (bsc#1194463). - CVE-2021-22600: Fixed double free bug in packet_set_ring() in net/packet/af_packet.c that could have been exploited by a local user through crafted syscalls to escalate privileges or deny service (bsc#1195307).
05 / REFERENCES
Further evidence
- https://bugzilla.suse.com/1194463
- https://bugzilla.suse.com/1195307
- https://bugzilla.suse.com/1195947
- https://www.suse.com/security/cve/CVE-2021-0920
- https://www.suse.com/security/cve/CVE-2021-22600
- https://www.suse.com/security/cve/CVE-2022-0516
- https://www.suse.com/support/update/announcement/2022/suse-su-20220660-1/