Uploaded image for project: 'Lustre'
  1. Lustre
  2. LU-16093

kernel update [SLES12 SP5 4.12.14-122.130.1]

    XMLWordPrintable

Details

    • Improvement
    • Resolution: Fixed
    • Minor
    • Lustre 2.16.0
    • None
    • None
    • 9223372036854775807

    Description

      The SUSE Linux Enterprise 12 SP5 kernel was updated to receive various
      security and bugfixes.

      The following security bugs were fixed:

      • CVE-2020-36557: Fixed race condition between the VT_DISALLOCATE ioctl
        and closing/opening of ttys that could lead to a use-after-free
        (bnc#1201429).
      • CVE-2020-36558: Fixed race condition involving VT_RESIZEX that could
        lead to a NULL pointer dereference and general protection fault
        (bnc#1200910).
      • CVE-2021-33655: Fixed out of bounds write with ioctl FBIOPUT_VSCREENINFO
        (bnc#1201635).
      • CVE-2021-33656: Fixed out of bounds write with ioctl PIO_FONT
        (bnc#1201636).
      • CVE-2022-1462: Fixed an out-of-bounds read flaw in the TeleTYpe
        subsystem (bnc#1198829).
      • CVE-2022-20166: Fixed possible out of bounds write due to sprintf
        unsafety that could cause local escalation of privilege (bnc#1200598).
      • CVE-2022-36946: Fixed incorrect packet truncation in nfqnl_mangle() that
        could lead to remote DoS (bnc#1201940).

      The following non-security bugs were fixed:
      https://lists.suse.com/pipermail/sle-security-updates/2022-August/011833.html

      Attachments

        Issue Links

          Activity

            People

              yujian Jian Yu
              yujian Jian Yu
              Votes:
              0 Vote for this issue
              Watchers:
              3 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: