VYPR

rpm package

suse/kernel-livepatch-SLE15-SP4_Update_5&distro=SUSE Linux Enterprise Live Patching 15 SP4

pkg:rpm/suse/kernel-livepatch-SLE15-SP4_Update_5&distro=SUSE%20Linux%20Enterprise%20Live%20Patching%2015%20SP4

Vulnerabilities (45)

  • CVE-2022-2153Aug 31, 2022
    affected < 1-150400.9.3.4fixed 1-150400.9.3.4

    A flaw was found in the Linux kernel’s KVM when attempting to set a SynIC IRQ. This issue makes it possible for a misbehaving VMM to write to SYNIC/STIMER MSRs, causing a NULL pointer dereference. This flaw allows an unprivileged local attacker on the host to issue specific ioctl

  • CVE-2022-2978Aug 24, 2022
    affected < 1-150400.9.3.4fixed 1-150400.9.3.4

    A flaw use after free in the Linux kernel NILFS file system was found in the way user triggers function security_inode_alloc to fail with following call to function nilfs_mdt_destroy. A local user could use this flaw to crash the system or potentially escalate their privileges on

  • CVE-2022-33981Jun 18, 2022
    affected < 1-150400.9.3.4fixed 1-150400.9.3.4

    drivers/block/floppy.c in the Linux kernel before 5.17.6 is vulnerable to a denial of service, because of a concurrency use-after-free flaw after deallocating raw_cmd in the raw_cmd_ioctl function.

  • CVE-2022-1882May 26, 2022
    affected < 1-150400.9.3.4fixed 1-150400.9.3.4

    A use-after-free flaw was found in the Linux kernel’s pipes functionality in how a user performs manipulations with the pipe post_one_notification() after free_pipe_info() that is already called. This flaw allows a local user to crash or potentially escalate their privileges on t

  • CVE-2021-39698Mar 16, 2022
    affected < 2-150400.2.1fixed 2-150400.2.1

    In aio_poll_complete_work of aio.c, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android ke

Page 3 of 3