Security update for kernel-livepatch-MICRO-6-0-RT_Update_3
This update for kernel-livepatch-MICRO-6-0-RT_Update_3 fixes the following issues: - CVE-2024-45016: Fixed netem: fix return value if duplicate enqueue fails (bsc#1230998) - CVE-2024-47684: Fixed tcp: check skb is non-NULL in tcp_rto_delta_us() (bsc#1231993) - CVE-2024-50302: Fixed HID: core: zero-initialize the report buffer (bsc#1233679) - CVE-2024-56600: Fixed net: inet6: do not leave a dangling sk pointer in inet6_create() (bsc#1235218) - CVE-2024-56648: Fixed net: hsr: avoid potential out-of-bound access in fill_frame_info() (bsc#1235452) - CVE-2024-57882: Fixed mptcp: fix TCP options overflow (bsc#1235916) - CVE-2024-53104: Fixed media: uvcvideo: Skip parsing frames of type UVC_VS_UNDEFINED in uvc_parse_format (bsc#1236783)
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
This update for kernel-livepatch-MICRO-6-0-RT_Update_3 fixes the following issues: - CVE-2024-45016: Fixed netem: fix return value if duplicate enqueue fails (bsc#1230998) - CVE-2024-47684: Fixed tcp: check skb is non-NULL in tcp_rto_delta_us() (bsc#1231993) - CVE-2024-50302: Fixed HID: core: zero-initialize the report buffer (bsc#1233679) - CVE-2024-56600: Fixed net: inet6: do not leave a dangling sk pointer in inet6_create() (bsc#1235218) - CVE-2024-56648: Fixed net: hsr: avoid potential out-of-bound access in fill_frame_info() (bsc#1235452) - CVE-2024-57882: Fixed mptcp: fix TCP options overflow (bsc#1235916) - CVE-2024-53104: Fixed media: uvcvideo: Skip parsing frames of type UVC_VS_UNDEFINED in uvc_parse_format (bsc#1236783)
05 / REFERENCES
Further evidence
- https://bugzilla.suse.com/1149841
- https://bugzilla.suse.com/1196281
- https://bugzilla.suse.com/1230998
- https://bugzilla.suse.com/1231993
- https://bugzilla.suse.com/1233679
- https://bugzilla.suse.com/1235218
- https://bugzilla.suse.com/1235452
- https://bugzilla.suse.com/1235916
- https://bugzilla.suse.com/1236783
- https://bugzilla.suse.com/904970
- https://bugzilla.suse.com/907150
- https://bugzilla.suse.com/920615
- https://bugzilla.suse.com/920633
- https://bugzilla.suse.com/930408
- https://www.suse.com/security/cve/CVE-2024-45016
- https://www.suse.com/security/cve/CVE-2024-47684
- https://www.suse.com/security/cve/CVE-2024-50302
- https://www.suse.com/security/cve/CVE-2024-53104
- https://www.suse.com/security/cve/CVE-2024-56600
- https://www.suse.com/security/cve/CVE-2024-56648
- https://www.suse.com/security/cve/CVE-2024-57882
- https://www.suse.com/support/update/announcement/2025/suse-su-202520191-1/