<!-- 
RSS generated by JIRA (9.4.14#940014-sha1:734e6822bbf0d45eff9af51f82432957f73aa32c) at Sat Feb 10 03:24:41 UTC 2024

It is possible to restrict the fields that are returned in this document by specifying the 'field' parameter in your request.
For example, to request only the issue key and summary append 'field=key&field=summary' to the URL of your request.
-->
<rss version="0.92" >
<channel>
    <title>Whamcloud Community JIRA</title>
    <link>https://jira.whamcloud.com</link>
    <description>This file is an XML representation of an issue</description>
    <language>en-us</language>    <build-info>
        <version>9.4.14</version>
        <build-number>940014</build-number>
        <build-date>05-12-2023</build-date>
    </build-info>


<item>
            <title>[LU-16174] kernel update [SLES15 SP4 5.14.21-150400.24.21.2]</title>
                <link>https://jira.whamcloud.com/browse/LU-16174</link>
                <project id="10000" key="LU">Lustre</project>
                    <description>&lt;p&gt;   The SUSE Linux Enterprise 15 SP4 kernel was updated to receive various&lt;br/&gt;
   security and bugfixes.&lt;/p&gt;

&lt;p&gt;   The following security bugs were fixed:&lt;/p&gt;

&lt;ul class=&quot;alternate&quot; type=&quot;square&quot;&gt;
	&lt;li&gt;CVE-2022-39190: Fixed an issue that was discovered in&lt;br/&gt;
     net/netfilter/nf_tables_api.c and could cause a denial of service upon&lt;br/&gt;
     binding to an already bound chain (bnc#1203117).&lt;/li&gt;
	&lt;li&gt;CVE-2022-39188: Fixed race condition in include/asm-generic/tlb.h where&lt;br/&gt;
     a device driver can free a page while it still has stale TLB entries&lt;br/&gt;
     (bnc#1203107).&lt;/li&gt;
	&lt;li&gt;CVE-2022-2663: Fixed an issue that was found in nf_conntrack_irc where&lt;br/&gt;
     the message handling could be confused and incorrectly matches the&lt;br/&gt;
     message (bnc#1202097).&lt;/li&gt;
	&lt;li&gt;CVE-2022-3078: Fixed a lack of check after calling vzalloc() and lack of&lt;br/&gt;
     free after allocation in drivers/media/test-drivers/vidtv/vidtv_s302m.c&lt;br/&gt;
     (bnc#1203041).&lt;/li&gt;
	&lt;li&gt;CVE-2022-28356: Fixed a refcount leak bug that was found in&lt;br/&gt;
     net/llc/af_llc.c (bnc#1197391).&lt;/li&gt;
	&lt;li&gt;CVE-2022-3028: Fixed race condition that was found in the IP framework&lt;br/&gt;
     for transforming packets (XFRM subsystem) (bnc#1202898).&lt;/li&gt;
	&lt;li&gt;CVE-2022-2905: Fixed tnum_range usage on array range checking for poke&lt;br/&gt;
     descriptors (bsc#1202564, bsc#1202860).&lt;/li&gt;
	&lt;li&gt;CVE-2022-2977: Fixed reference counting for struct tpm_chip&lt;br/&gt;
     (bsc#1202672).&lt;/li&gt;
	&lt;li&gt;CVE-2022-2938: Fixed a flaw that was found inside the Pressure Stall&lt;br/&gt;
     Information implementation that could have been used to allow an&lt;br/&gt;
     attacker to crash the system or have other memory-corruption side&lt;br/&gt;
     effects (bnc#1202623).&lt;/li&gt;
	&lt;li&gt;CVE-2022-28693: Fixed x86/speculation behavior by disabling RRSBA&lt;br/&gt;
     (bsc#1201455).&lt;/li&gt;
	&lt;li&gt;CVE-2021-33135: Fixed uncontrolled resource consumption inside Intel(R)&lt;br/&gt;
     SGX that may have allowed an authenticated user to potentially enable&lt;br/&gt;
     denial of service via local access (bnc#1199515).&lt;/li&gt;
	&lt;li&gt;CVE-2022-2588: Fixed use-after-free in cls_route (bsc#1202096).&lt;/li&gt;
	&lt;li&gt;CVE-2022-2959: Fixed a race condition that was found inside the watch&lt;br/&gt;
     queue due to a missing lock in pipe_resize_ring() (bnc#1202681&lt;br/&gt;
     bnc#1202685).&lt;/li&gt;
	&lt;li&gt;CVE-2022-36946: Fixed a denial of service (panic) inside nfqnl_mangle in&lt;br/&gt;
     net/netfilter/nfnetlink_queue.c (bnc#1201940 bnc#1201941 bnc#1202312&lt;br/&gt;
     bnc#1202874).&lt;/li&gt;
	&lt;li&gt;CVE-2021-4037: Fixed function logic vulnerability that allowed local&lt;br/&gt;
     users to create files for the XFS file-system with an unintended group&lt;br/&gt;
     ownership and with group execution and SGID permission bits set&lt;br/&gt;
     (bnc#1198702).&lt;/li&gt;
	&lt;li&gt;CVE-2022-2873: Fixed an out-of-bounds memory access flaw that was found&lt;br/&gt;
     in iSMT SMBus host controller driver (bnc#1202558).&lt;/li&gt;
	&lt;li&gt;CVE-2022-36879: Fixed an issue in xfrm_expand_policies in&lt;br/&gt;
     net/xfrm/xfrm_policy.c where a refcount could be dropped twice&lt;br/&gt;
     (bnc#1201948).&lt;/li&gt;
	&lt;li&gt;CVE-2022-20368: Fixed slab-out-of-bounds access in packet_recvmsg()&lt;br/&gt;
     (bsc#1202346).&lt;/li&gt;
	&lt;li&gt;CVE-2022-20369: Fixed out of bounds write in v4l2_m2m_querybuf of&lt;br/&gt;
     v4l2-mem2mem.c (bnc#1202347).&lt;/li&gt;
	&lt;li&gt;CVE-2016-3695: Fixed an issue inside the einj_error_inject function in&lt;br/&gt;
     drivers/acpi/apei/einj.c that allowed users to simulate hardware errors&lt;br/&gt;
     and consequently cause a denial of service (bnc#1023051).&lt;/li&gt;
	&lt;li&gt;CVE-2022-2639: Fixed an integer coercion error that was found in the&lt;br/&gt;
     openvswitch kernel module (bnc#1202154).&lt;/li&gt;
	&lt;li&gt;CVE-2020-36516: Fixed an issue in the mixed IPID assignment method where&lt;br/&gt;
     an attacker was able to inject data into or terminate a victim&apos;s TCP&lt;br/&gt;
     session (bnc#1196616).&lt;/li&gt;
	&lt;li&gt;CVE-2022-32250: Fixed a privilege escalation issue in&lt;br/&gt;
     net/netfilter/nf_tables_api.c that allowed a local user to became root&lt;br/&gt;
     (bnc#1200015).&lt;/li&gt;
&lt;/ul&gt;


&lt;p&gt;   The following non-security bugs were fixed:&lt;br/&gt;
   &lt;a href=&quot;https://lists.suse.com/pipermail/sle-security-updates/2022-September/012273.html&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;https://lists.suse.com/pipermail/sle-security-updates/2022-September/012273.html&lt;/a&gt;&lt;/p&gt;</description>
                <environment></environment>
        <key id="72433">LU-16174</key>
            <summary>kernel update [SLES15 SP4 5.14.21-150400.24.21.2]</summary>
                <type id="4" iconUrl="https://jira.whamcloud.com/secure/viewavatar?size=xsmall&amp;avatarId=11310&amp;avatarType=issuetype">Improvement</type>
                                            <priority id="4" iconUrl="https://jira.whamcloud.com/images/icons/priorities/minor.svg">Minor</priority>
                        <status id="5" iconUrl="https://jira.whamcloud.com/images/icons/statuses/resolved.png" description="A resolution has been taken, and it is awaiting verification by reporter. From here issues are either reopened, or are closed.">Resolved</status>
                    <statusCategory id="3" key="done" colorName="success"/>
                                    <resolution id="1">Fixed</resolution>
                                        <assignee username="yujian">Jian Yu</assignee>
                                    <reporter username="yujian">Jian Yu</reporter>
                        <labels>
                    </labels>
                <created>Tue, 20 Sep 2022 03:29:40 +0000</created>
                <updated>Thu, 3 Nov 2022 04:07:37 +0000</updated>
                            <resolved>Tue, 25 Oct 2022 19:11:53 +0000</resolved>
                                                    <fixVersion>Lustre 2.16.0</fixVersion>
                    <fixVersion>Lustre 2.15.2</fixVersion>
                                        <due></due>
                            <votes>0</votes>
                                    <watches>2</watches>
                                                                            <comments>
                            <comment id="347152" author="gerrit" created="Tue, 20 Sep 2022 03:36:36 +0000"  >&lt;p&gt;&quot;Jian Yu &amp;lt;yujian@whamcloud.com&amp;gt;&quot; uploaded a new patch: &lt;a href=&quot;https://review.whamcloud.com/48604&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;https://review.whamcloud.com/48604&lt;/a&gt;&lt;br/&gt;
Subject: &lt;a href=&quot;https://jira.whamcloud.com/browse/LU-16174&quot; title=&quot;kernel update [SLES15 SP4 5.14.21-150400.24.21.2]&quot; class=&quot;issue-link&quot; data-issue-key=&quot;LU-16174&quot;&gt;&lt;del&gt;LU-16174&lt;/del&gt;&lt;/a&gt; kernel: kernel update SLES15 SP4 &lt;span class=&quot;error&quot;&gt;&amp;#91;5.14.21-150400.24.21.2&amp;#93;&lt;/span&gt;&lt;br/&gt;
Project: fs/lustre-release&lt;br/&gt;
Branch: master&lt;br/&gt;
Current Patch Set: 1&lt;br/&gt;
Commit: 896fd88c35b6685a586c1279c83c739b48cbe846&lt;/p&gt;</comment>
                            <comment id="348153" author="gerrit" created="Wed, 28 Sep 2022 06:57:47 +0000"  >&lt;p&gt;&quot;Jian Yu &amp;lt;yujian@whamcloud.com&amp;gt;&quot; uploaded a new patch: &lt;a href=&quot;https://review.whamcloud.com/48688&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;https://review.whamcloud.com/48688&lt;/a&gt;&lt;br/&gt;
Subject: &lt;a href=&quot;https://jira.whamcloud.com/browse/LU-16174&quot; title=&quot;kernel update [SLES15 SP4 5.14.21-150400.24.21.2]&quot; class=&quot;issue-link&quot; data-issue-key=&quot;LU-16174&quot;&gt;&lt;del&gt;LU-16174&lt;/del&gt;&lt;/a&gt; kernel: kernel update SLES15 SP4 &lt;span class=&quot;error&quot;&gt;&amp;#91;5.14.21-150400.24.21.2&amp;#93;&lt;/span&gt;&lt;br/&gt;
Project: fs/lustre-release&lt;br/&gt;
Branch: b2_15&lt;br/&gt;
Current Patch Set: 1&lt;br/&gt;
Commit: aca11ff9303283618bb0bbe4dd10ae430e55d658&lt;/p&gt;</comment>
                            <comment id="350724" author="gerrit" created="Tue, 25 Oct 2022 17:26:45 +0000"  >&lt;p&gt;&quot;Oleg Drokin &amp;lt;green@whamcloud.com&amp;gt;&quot; merged in patch &lt;a href=&quot;https://review.whamcloud.com/c/fs/lustre-release/+/48604/&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;https://review.whamcloud.com/c/fs/lustre-release/+/48604/&lt;/a&gt;&lt;br/&gt;
Subject: &lt;a href=&quot;https://jira.whamcloud.com/browse/LU-16174&quot; title=&quot;kernel update [SLES15 SP4 5.14.21-150400.24.21.2]&quot; class=&quot;issue-link&quot; data-issue-key=&quot;LU-16174&quot;&gt;&lt;del&gt;LU-16174&lt;/del&gt;&lt;/a&gt; kernel: kernel update SLES15 SP4 &lt;span class=&quot;error&quot;&gt;&amp;#91;5.14.21-150400.24.21.2&amp;#93;&lt;/span&gt;&lt;br/&gt;
Project: fs/lustre-release&lt;br/&gt;
Branch: master&lt;br/&gt;
Current Patch Set: &lt;br/&gt;
Commit: 5d31fdaf681a8d9c39d197531f010dcd97bf604c&lt;/p&gt;</comment>
                            <comment id="350752" author="pjones" created="Tue, 25 Oct 2022 19:11:53 +0000"  >&lt;p&gt;Landed for 2.16&lt;/p&gt;</comment>
                            <comment id="350807" author="gerrit" created="Wed, 26 Oct 2022 04:42:38 +0000"  >&lt;p&gt;&quot;Oleg Drokin &amp;lt;green@whamcloud.com&amp;gt;&quot; merged in patch &lt;a href=&quot;https://review.whamcloud.com/c/fs/lustre-release/+/48688/&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;https://review.whamcloud.com/c/fs/lustre-release/+/48688/&lt;/a&gt;&lt;br/&gt;
Subject: &lt;a href=&quot;https://jira.whamcloud.com/browse/LU-16174&quot; title=&quot;kernel update [SLES15 SP4 5.14.21-150400.24.21.2]&quot; class=&quot;issue-link&quot; data-issue-key=&quot;LU-16174&quot;&gt;&lt;del&gt;LU-16174&lt;/del&gt;&lt;/a&gt; kernel: kernel update SLES15 SP4 &lt;span class=&quot;error&quot;&gt;&amp;#91;5.14.21-150400.24.21.2&amp;#93;&lt;/span&gt;&lt;br/&gt;
Project: fs/lustre-release&lt;br/&gt;
Branch: b2_15&lt;br/&gt;
Current Patch Set: &lt;br/&gt;
Commit: e3c73fd46a693f45a044ce406a3a3671fc2ef7de&lt;/p&gt;</comment>
                    </comments>
                <issuelinks>
                            <issuelinktype id="10011">
                    <name>Related</name>
                                            <outwardlinks description="is related to ">
                                        <issuelink>
            <issuekey id="70806">LU-15959</issuekey>
        </issuelink>
                            </outwardlinks>
                                                                <inwardlinks description="is related to">
                                        <issuelink>
            <issuekey id="73081">LU-16294</issuekey>
        </issuelink>
                            </inwardlinks>
                                    </issuelinktype>
                    </issuelinks>
                <attachments>
                    </attachments>
                <subtasks>
                    </subtasks>
                <customfields>
                                                                                                                                                                                            <customfield id="customfield_10890" key="com.atlassian.jira.plugins.jira-development-integration-plugin:devsummary">
                        <customfieldname>Development</customfieldname>
                        <customfieldvalues>
                            
                        </customfieldvalues>
                    </customfield>
                                                                                                                                                                                                                                                                                                                                                        <customfield id="customfield_10390" key="com.pyxis.greenhopper.jira:gh-lexo-rank">
                        <customfieldname>Rank</customfieldname>
                        <customfieldvalues>
                            <customfieldvalue>1|i030nr:</customfieldvalue>

                        </customfieldvalues>
                    </customfield>
                                                                <customfield id="customfield_10090" key="com.pyxis.greenhopper.jira:gh-global-rank">
                        <customfieldname>Rank (Obsolete)</customfieldname>
                        <customfieldvalues>
                            <customfieldvalue>9223372036854775807</customfieldvalue>
                        </customfieldvalues>
                    </customfield>
                                                                                                                                                                                                                                                                                                                                                                                                                </customfields>
    </item>
</channel>
</rss>