rpm package
suse/kernel-default&distro=SUSE Linux Enterprise Live Patching 15 SP4
pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Live%20Patching%2015%20SP4
Vulnerabilities (2,888)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2022-33740 | Hig | 7.1 | < 5.14.21-150400.24.11.1 | 5.14.21-150400.24.11.1 | Jul 5, 2022 | Linux disk/nic frontends data leaks T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Linux Block and Network PV device frontends don't zero memory regions before sharing them with the backend (CVE-202 | |
| CVE-2022-26365 | Hig | 7.1 | < 5.14.21-150400.24.11.1 | 5.14.21-150400.24.11.1 | Jul 5, 2022 | Linux disk/nic frontends data leaks T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Linux Block and Network PV device frontends don't zero memory regions before sharing them with the backend (CVE-202 | |
| CVE-2022-34918 | Hig | 7.8 | < 5.14.21-150400.24.11.1 | 5.14.21-150400.24.11.1 | Jul 4, 2022 | An issue was discovered in the Linux kernel through 5.18.9. A type confusion bug in nft_set_elem_init (leading to a buffer overflow) could be used by a local attacker to escalate privileges, a different vulnerability than CVE-2022-32250. (The attacker can obtain root access, but | |
| CVE-2022-1852 | Med | 5.5 | < 5.14.21-150400.24.11.1 | 5.14.21-150400.24.11.1 | Jun 30, 2022 | A NULL pointer dereference flaw was found in the Linux kernel’s KVM module, which can lead to a denial of service in the x86_emulate_insn in arch/x86/kvm/emulate.c. This flaw occurs while executing an illegal instruction in guest in the Intel CPU. | |
| CVE-2022-33981 | Low | 3.3 | < 5.14.21-150400.24.11.1 | 5.14.21-150400.24.11.1 | Jun 18, 2022 | drivers/block/floppy.c in the Linux kernel before 5.17.6 is vulnerable to a denial of service, because of a concurrency use-after-free flaw after deallocating raw_cmd in the raw_cmd_ioctl function. | |
| CVE-2022-21180 | Med | 5.5 | < 5.14.21-150400.24.11.1 | 5.14.21-150400.24.11.1 | Jun 15, 2022 | Improper input validation for some Intel(R) Processors may allow an authenticated user to potentially cause a denial of service via local access. | |
| CVE-2022-21166 | Med | 5.5 | < 5.14.21-150400.24.11.1 | 5.14.21-150400.24.11.1 | Jun 15, 2022 | Incomplete cleanup in specific special register write operations for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. | |
| CVE-2022-21127 | Med | 5.5 | < 5.14.21-150400.24.11.1 | 5.14.21-150400.24.11.1 | Jun 15, 2022 | Incomplete cleanup in specific special register read operations for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. | |
| CVE-2022-21125 | Med | 5.5 | < 5.14.21-150400.24.11.1 | 5.14.21-150400.24.11.1 | Jun 15, 2022 | Incomplete cleanup of microarchitectural fill buffers on some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. | |
| CVE-2022-21123 | Med | 5.5 | < 5.14.21-150400.24.11.1 | 5.14.21-150400.24.11.1 | Jun 15, 2022 | Incomplete cleanup of multi-core shared buffers for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. | |
| CVE-2022-20154 | Med | 6.4 | < 5.14.21-150400.24.11.1 | 5.14.21-150400.24.11.1 | Jun 15, 2022 | In lock_sock_nested of sock.c, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: | |
| CVE-2022-20132 | Med | 4.6 | < 5.14.21-150400.24.11.1 | 5.14.21-150400.24.11.1 | Jun 15, 2022 | In lg_probe and related functions of hid-lg.c and other USB HID files, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure if a malicious USB HID device were plugged in, with no additional execution privileges n | |
| CVE-2022-21499 | Med | 6.7 | < 5.14.21-150400.24.11.1 | 5.14.21-150400.24.11.1 | Jun 9, 2022 | KGDB and KDB allow read and write access to kernel memory, and thus should be restricted during lockdown. An attacker with access to a serial port could trigger the debugger so it is important that the debugger respect the lockdown mode when/if it is triggered. CVSS 3.1 Base Scor | |
| CVE-2022-1998 | Hig | 7.8 | < 5.14.21-150400.24.11.1 | 5.14.21-150400.24.11.1 | Jun 9, 2022 | A use after free in the Linux kernel File System notify functionality was found in the way user triggers copy_info_records_to_user() call to fail in copy_event_to_user(). A local user could use this flaw to crash the system or potentially escalate their privileges on the system. | |
| CVE-2022-32296 | Low | 3.3 | < 5.14.21-150400.24.28.1 | 5.14.21-150400.24.28.1 | Jun 5, 2022 | The Linux kernel before 5.17.9 allows TCP servers to identify clients by observing what source ports are used. This occurs because of use of Algorithm 4 ("Double-Hash Port Selection Algorithm") of RFC 6056. | |
| CVE-2022-32250 | Hig | 7.8 | < 5.14.21-150400.24.21.2 | 5.14.21-150400.24.21.2 | Jun 2, 2022 | net/netfilter/nf_tables_api.c in the Linux kernel through 5.18.1 allows a local user (able to create user/net namespaces) to escalate privileges to root because an incorrect NFT_STATEFUL_EXPR check leads to a use-after-free. | |
| CVE-2022-1789 | Med | 6.8 | < 5.14.21-150400.24.11.1 | 5.14.21-150400.24.11.1 | Jun 2, 2022 | With shadow paging enabled, the INVPCID instruction results in a call to kvm_mmu_invpcid_gva. If INVPCID is executed with CR0.PG=0, the invlpg callback is not set and the result is a NULL pointer dereference. | |
| CVE-2022-1652 | Hig | 7.8 | < 5.14.21-150400.24.11.1 | 5.14.21-150400.24.11.1 | Jun 2, 2022 | Linux Kernel could allow a local attacker to execute arbitrary code on the system, caused by a concurrency use-after-free flaw in the bad_flp_intr function. By executing a specially-crafted program, an attacker could exploit this vulnerability to execute arbitrary code or cause a | |
| CVE-2022-1462 | Med | 6.3 | < 5.14.21-150400.24.11.1 | 5.14.21-150400.24.11.1 | Jun 2, 2022 | An out-of-bounds read flaw was found in the Linux kernel’s TeleTYpe subsystem. The issue occurs in how a user triggers a race condition using ioctls TIOCSPTLCK and TIOCGPTPEER and TIOCSTI and TCXONC with leakage of memory in the flush_to_ldisc function. This flaw allows a local u | |
| CVE-2022-1882 | Hig | 7.8 | < 5.14.21-150400.24.33.2 | 5.14.21-150400.24.33.2 | May 26, 2022 | A use-after-free flaw was found in the Linux kernel’s pipes functionality in how a user performs manipulations with the pipe post_one_notification() after free_pipe_info() that is already called. This flaw allows a local user to crash or potentially escalate their privileges on t |
- affected < 5.14.21-150400.24.11.1fixed 5.14.21-150400.24.11.1
Linux disk/nic frontends data leaks T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Linux Block and Network PV device frontends don't zero memory regions before sharing them with the backend (CVE-202
- affected < 5.14.21-150400.24.11.1fixed 5.14.21-150400.24.11.1
Linux disk/nic frontends data leaks T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Linux Block and Network PV device frontends don't zero memory regions before sharing them with the backend (CVE-202
- affected < 5.14.21-150400.24.11.1fixed 5.14.21-150400.24.11.1
An issue was discovered in the Linux kernel through 5.18.9. A type confusion bug in nft_set_elem_init (leading to a buffer overflow) could be used by a local attacker to escalate privileges, a different vulnerability than CVE-2022-32250. (The attacker can obtain root access, but
- affected < 5.14.21-150400.24.11.1fixed 5.14.21-150400.24.11.1
A NULL pointer dereference flaw was found in the Linux kernel’s KVM module, which can lead to a denial of service in the x86_emulate_insn in arch/x86/kvm/emulate.c. This flaw occurs while executing an illegal instruction in guest in the Intel CPU.
- affected < 5.14.21-150400.24.11.1fixed 5.14.21-150400.24.11.1
drivers/block/floppy.c in the Linux kernel before 5.17.6 is vulnerable to a denial of service, because of a concurrency use-after-free flaw after deallocating raw_cmd in the raw_cmd_ioctl function.
- affected < 5.14.21-150400.24.11.1fixed 5.14.21-150400.24.11.1
Improper input validation for some Intel(R) Processors may allow an authenticated user to potentially cause a denial of service via local access.
- affected < 5.14.21-150400.24.11.1fixed 5.14.21-150400.24.11.1
Incomplete cleanup in specific special register write operations for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
- affected < 5.14.21-150400.24.11.1fixed 5.14.21-150400.24.11.1
Incomplete cleanup in specific special register read operations for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
- affected < 5.14.21-150400.24.11.1fixed 5.14.21-150400.24.11.1
Incomplete cleanup of microarchitectural fill buffers on some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
- affected < 5.14.21-150400.24.11.1fixed 5.14.21-150400.24.11.1
Incomplete cleanup of multi-core shared buffers for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
- affected < 5.14.21-150400.24.11.1fixed 5.14.21-150400.24.11.1
In lock_sock_nested of sock.c, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID:
- affected < 5.14.21-150400.24.11.1fixed 5.14.21-150400.24.11.1
In lg_probe and related functions of hid-lg.c and other USB HID files, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure if a malicious USB HID device were plugged in, with no additional execution privileges n
- affected < 5.14.21-150400.24.11.1fixed 5.14.21-150400.24.11.1
KGDB and KDB allow read and write access to kernel memory, and thus should be restricted during lockdown. An attacker with access to a serial port could trigger the debugger so it is important that the debugger respect the lockdown mode when/if it is triggered. CVSS 3.1 Base Scor
- affected < 5.14.21-150400.24.11.1fixed 5.14.21-150400.24.11.1
A use after free in the Linux kernel File System notify functionality was found in the way user triggers copy_info_records_to_user() call to fail in copy_event_to_user(). A local user could use this flaw to crash the system or potentially escalate their privileges on the system.
- affected < 5.14.21-150400.24.28.1fixed 5.14.21-150400.24.28.1
The Linux kernel before 5.17.9 allows TCP servers to identify clients by observing what source ports are used. This occurs because of use of Algorithm 4 ("Double-Hash Port Selection Algorithm") of RFC 6056.
- affected < 5.14.21-150400.24.21.2fixed 5.14.21-150400.24.21.2
net/netfilter/nf_tables_api.c in the Linux kernel through 5.18.1 allows a local user (able to create user/net namespaces) to escalate privileges to root because an incorrect NFT_STATEFUL_EXPR check leads to a use-after-free.
- affected < 5.14.21-150400.24.11.1fixed 5.14.21-150400.24.11.1
With shadow paging enabled, the INVPCID instruction results in a call to kvm_mmu_invpcid_gva. If INVPCID is executed with CR0.PG=0, the invlpg callback is not set and the result is a NULL pointer dereference.
- affected < 5.14.21-150400.24.11.1fixed 5.14.21-150400.24.11.1
Linux Kernel could allow a local attacker to execute arbitrary code on the system, caused by a concurrency use-after-free flaw in the bad_flp_intr function. By executing a specially-crafted program, an attacker could exploit this vulnerability to execute arbitrary code or cause a
- affected < 5.14.21-150400.24.11.1fixed 5.14.21-150400.24.11.1
An out-of-bounds read flaw was found in the Linux kernel’s TeleTYpe subsystem. The issue occurs in how a user triggers a race condition using ioctls TIOCSPTLCK and TIOCGPTPEER and TIOCSTI and TCXONC with leakage of memory in the flush_to_ldisc function. This flaw allows a local u
- affected < 5.14.21-150400.24.33.2fixed 5.14.21-150400.24.33.2
A use-after-free flaw was found in the Linux kernel’s pipes functionality in how a user performs manipulations with the pipe post_one_notification() after free_pipe_info() that is already called. This flaw allows a local user to crash or potentially escalate their privileges on t
Page 143 of 145