Security update for the Linux Kernel (Live Patch 28 for SLE 15 SP4)
This update for the Linux Kernel 5.14.21-150400_24_125 fixes several issues. The following security issues were fixed: - CVE-2021-47598: sch_cake: do not call cake_destroy() from cake_init() (bsc#1227471). - Intermittent nfs mount failures (may be due to SUNRPC over UDP) (bsc#1231353) - CVE-2024-40954: net: do not leave a dangling sk pointer, when socket creation fails (bsc#1227808) - CVE-2024-41059: hfsplus: fix uninit-value in copy_name (bsc#1228573).
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
This update for the Linux Kernel 5.14.21-150400_24_125 fixes several issues. The following security issues were fixed: - CVE-2021-47598: sch_cake: do not call cake_destroy() from cake_init() (bsc#1227471). - Intermittent nfs mount failures (may be due to SUNRPC over UDP) (bsc#1231353) - CVE-2024-40954: net: do not leave a dangling sk pointer, when socket creation fails (bsc#1227808) - CVE-2024-41059: hfsplus: fix uninit-value in copy_name (bsc#1228573).
05 / REFERENCES
Further evidence
- https://bugzilla.suse.com/1227471
- https://bugzilla.suse.com/1228573
- https://bugzilla.suse.com/1228786
- https://bugzilla.suse.com/1231353
- https://www.suse.com/security/cve/CVE-2021-47598
- https://www.suse.com/security/cve/CVE-2024-40954
- https://www.suse.com/security/cve/CVE-2024-41059
- https://www.suse.com/support/update/announcement/2024/suse-su-20243836-1/