{"schema_version":"1.7.3","id":"SUSE-SU-2024:0976-1","published":"2024-03-22T11:19:37Z","modified":"2026-02-04T03:43:57.908146Z","related":["CVE-2019-25162","CVE-2020-36777","CVE-2020-36784","CVE-2021-46906","CVE-2021-46915","CVE-2021-46921","CVE-2021-46924","CVE-2021-46929","CVE-2021-46932","CVE-2021-46953","CVE-2021-46974","CVE-2021-46991","CVE-2021-46992","CVE-2021-47013","CVE-2021-47054","CVE-2021-47076","CVE-2021-47077","CVE-2021-47078","CVE-2022-48627","CVE-2023-28746","CVE-2023-35827","CVE-2023-46343","CVE-2023-52340","CVE-2023-52429","CVE-2023-52443","CVE-2023-52445","CVE-2023-52449","CVE-2023-52451","CVE-2023-52464","CVE-2023-52475","CVE-2023-52478","CVE-2023-52482","CVE-2023-52502","CVE-2023-52530","CVE-2023-52531","CVE-2023-52532","CVE-2023-52574","CVE-2023-52597","CVE-2023-52605","CVE-2024-0607","CVE-2024-1151","CVE-2024-23849","CVE-2024-23851","CVE-2024-26585","CVE-2024-26595","CVE-2024-26600","CVE-2024-26622"],"upstream":["CVE-2019-25162","CVE-2020-36777","CVE-2020-36784","CVE-2021-46906","CVE-2021-46915","CVE-2021-46921","CVE-2021-46924","CVE-2021-46929","CVE-2021-46932","CVE-2021-46953","CVE-2021-46974","CVE-2021-46991","CVE-2021-46992","CVE-2021-47013","CVE-2021-47054","CVE-2021-47076","CVE-2021-47077","CVE-2021-47078","CVE-2022-48627","CVE-2023-28746","CVE-2023-35827","CVE-2023-46343","CVE-2023-52340","CVE-2023-52429","CVE-2023-52443","CVE-2023-52445","CVE-2023-52449","CVE-2023-52451","CVE-2023-52464","CVE-2023-52475","CVE-2023-52478","CVE-2023-52482","CVE-2023-52502","CVE-2023-52530","CVE-2023-52531","CVE-2023-52532","CVE-2023-52574","CVE-2023-52597","CVE-2023-52605","CVE-2024-0607","CVE-2024-1151","CVE-2024-23849","CVE-2024-23851","CVE-2024-26585","CVE-2024-26595","CVE-2024-26600","CVE-2024-26622"],"summary":"Security update for the Linux Kernel","details":"\nThe SUSE Linux Enterprise SLE12SP5 RT kernel was updated to receive various security and bugfixes.\n\n\nThe following security bugs were fixed:\n\n- CVE-2019-25162: Fixed a potential use after free (bsc#1220409).\n- CVE-2020-36777: Fixed a memory leak in dvb_media_device_free() (bsc#1220526).\n- CVE-2020-36784: Fixed reference leak when pm_runtime_get_sync fails (bsc#1220570).\n- CVE-2021-46906: Fixed an info leak in hid_submit_ctrl (bsc#1220421).\n- CVE-2021-46915: Fixed a bug to avoid possible divide error in nft_limit_init (bsc#1220436).\n- CVE-2021-46921: Fixed ordering in queued_write_lock_slowpath (bsc#1220468).\n- CVE-2021-46924: Fixed fix memory leak in device probe and remove (bsc#1220459)\n- CVE-2021-46932: Fixed missing work initialization before device registration (bsc#1220444)\n- CVE-2021-46953: Fixed a corruption in interrupt mappings on watchdow probe failure (bsc#1220599).\n- CVE-2021-46991: Fixed a use-after-free in i40e_client_subtask (bsc#1220575).\n- CVE-2021-46992: Fixed a bug to avoid overflows in nft_hash_buckets (bsc#1220638).\n- CVE-2021-47013: Fixed a use after free in emac_mac_tx_buf_send (bsc#1220641).\n- CVE-2021-47054: Fixed a bug to put child node before return (bsc#1220767).\n- CVE-2021-47076: Fixed a bug by returning CQE error if invalid lkey was supplied (bsc#1220860)\n- CVE-2021-47077: Fixed a NULL pointer dereference when in shost_data (bsc#1220861).\n- CVE-2021-47078: Fixed a bug by clearing all QP fields if creation failed (bsc#1220863)\n- CVE-2022-48627: Fixed a memory overlapping when deleting chars in the buffer (bsc#1220845).\n- CVE-2023-28746: Fixed Register File Data Sampling (bsc#1213456).\n- CVE-2023-35827: Fixed a use-after-free issue in ravb_tx_timeout_work() (bsc#1212514).\n- CVE-2023-46343: Fixed a NULL pointer dereference in send_acknowledge() (CVE-2023-46343).\n- CVE-2023-52340: Fixed ICMPv6 “Packet Too Big” packets force a DoS of the Linux kernel by forcing 100% CPU (bsc#1219295).\n- CVE-2023-52429: Fixed potential DoS in dm_table_create in drivers/md/dm-table.c (bsc#1219827).\n- CVE-2023-52443: Fixed crash when parsed profile name is empty  (bsc#1220240).\n- CVE-2023-52445: Fixed use after free on context disconnection (bsc#1220241).\n- CVE-2023-52449: Fixed gluebi NULL pointer dereference caused by ftl notifier  (bsc#1220238).\n- CVE-2023-52451: Fixed access beyond end of drmem array  (bsc#1220250).\n- CVE-2023-52464: Fixed possible out-of-bounds string access (bsc#1220330)\n- CVE-2023-52475: Fixed use-after-free in powermate_config_complete (bsc#1220649)\n- CVE-2023-52478: Fixed kernel crash on receiver USB disconnect (bsc#1220796)\n- CVE-2023-52482: Fixed a bug by adding SRSO mitigation for Hygon processors (bsc#1220735).\n- CVE-2023-52502: Fixed a race condition in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn() (bsc#1220831).\n- CVE-2023-52530: Fixed a potential key use-after-free in wifi mac80211 (bsc#1220930).\n- CVE-2023-52531: Fixed a memory corruption issue in iwlwifi (bsc#1220931).\n- CVE-2023-52532: Fixed a bug in TX CQE error handling (bsc#1220932).\n- CVE-2023-52574: Fixed a bug by hiding new member header_ops (bsc#1220870).\n- CVE-2023-52597: Fixed a setting of fpc register in KVM (bsc#1221040).\n- CVE-2023-52605: Fixed a NULL pointer dereference check (bsc#1221039)\n- CVE-2024-0607: Fixed 64-bit load issue in  nft_byteorder_eval() (bsc#1218915).\n- CVE-2024-1151: Fixed unlimited number of recursions from action  sets (bsc#1219835).\n- CVE-2024-23849: Fixed array-index-out-of-bounds in rds_cmsg_recv  (bsc#1219127).\n- CVE-2024-23851: Fixed crash in copy_params in drivers/md/dm-ioctl.c (bsc#1219146).\n- CVE-2024-26585: Fixed race between tx work scheduling and socket close  (bsc#1220187).\n- CVE-2024-26595: Fixed NULL pointer dereference in  error path (bsc#1220344).\n- CVE-2024-26600: Fixed NULL pointer dereference for SRP in phy-omap-usb2 (bsc#1220340).\n- CVE-2024-26622: Fixed UAF write bug in tomoyo_write_control() (bsc#1220825).\n\nThe following non-security bugs were fixed:\n\n- [media] coda: simplify optional reset handling (git-fixes).\n- [media] media drivers: annotate fall-through (git-fixes).\n- [media] media: platform: coda: remove variable self assignment (git-fixes).\n- asn.1: fix check for strdup() success (git-fixes).\n- audit: fix possible soft lockup in __audit_inode_child() (git-fixes).\n- bluetooth: hci_bcsp: do not call kfree_skb() under spin_lock_irqsave() (git-fixes).\n- bluetooth: hci_h5: do not call kfree_skb() under spin_lock_irqsave() (git-fixes).\n- bluetooth: hci_ll: do not call kfree_skb() under spin_lock_irqsave() (git-fixes).\n- bluetooth: hci_qca: do not call kfree_skb() under spin_lock_irqsave() (git-fixes).\n- bnx2x: fix pf-vf communication over multi-cos queues (git-fixes).\n- doc/readme.ksyms: add to repo.++ kernel-source-rt.spec (revision 4)%define git_commit 1431ee6e1c7fc02206d6bd539f8bd8ec4ce61801release:    &lt;release>.g1431ee6this package provides the rpm macros and templates for kernel module packages++ kernel-source.spec.in (revision 4)this package provides the rpm macros and templates for kernel module packages\n- e1000: fix memory leaks (git-fixes).\n- gve: fix skb truesize underestimation (git-fixes).\n- igb: clean up in all error paths when enabling sr-iov (git-fixes).\n- igb: fix constant media auto sense switching when no cable is connected (git-fixes).\n- ipv6: fix handling of lla with vrf and sockets bound to vrf (git-fixes).\n- ipv6: fix typos in __ip6_finish_output() (git-fixes).\n- ixgbe: protect tx timestamping from api misuse (git-fixes).\n- kcm: call strp_stop before strp_done in kcm_attach (git-fixes).\n- kcm: fix strp_init() order and cleanup (git-fixes).\n- kernel-source: fix description typo\n- kvm: s390: vsie: fix race during shadow creation (git-fixes bsc#1220613).\n- kvm: vmx: move verw closer to vmentry for mds mitigation (git-fixes).\n- kvm: vmx: use bt+jnc, i.e. eflags.cf to select vmresume vs. vmlaunch (git-fixes).\n- kvm: x86: add support for cpuid leaf 0x80000021 (git-fixes).\n- kvm: x86: move open-coded cpuid leaf 0x80000021 eax bit propagation code (git-fixes).\n- kvm: x86: synthesize cpuid leaf 0x80000021h if useful (git-fixes).\n- kvm: x86: work around qemu issue with synthetic cpuid leaves (git-fixes).\n- locking/barriers: introduce smp_cond_load_relaxed() and atomic_cond_read_relaxed() (bsc#1220468 bsc#1050549).\n- media: coda: constify platform_device_id (git-fixes).\n- media: coda: explicitly request exclusive reset control (git-fixes).\n- media: coda: reduce iram size to leave space for suspend to ram (git-fixes).\n- media: coda: reuse coda_s_fmt_vid_cap to propagate format in coda_s_fmt_vid_out (git-fixes).\n- media: coda: set min_buffers_needed (git-fixes).\n- media: coda: wake up capture queue on encoder stop after output streamoff (git-fixes).\n- media: dvb-usb: add memory free on error path in dw2102_probe() (git-fixes).\n- media: dvb-usb: dw2102: fix uninit-value in su3000_read_mac_address (git-fixes).\n- media: dvb-usb: m920x: fix a potential memory leak in m920x_i2c_xfer() (git-fixes).\n- media: dw2102: fix memleak on sequence of probes (git-fixes).\n- media: dw2102: fix use after free (git-fixes).\n- media: dw2102: make dvb_usb_device_description structures const (git-fixes).\n- media: m920x: do not use stack on usb reads (git-fixes).\n- media: rc: do not remove first bit if leader pulse is present (git-fixes).\n- media: rc: ir-rc6-decoder: enable toggle bit for kathrein rcu-676 remote (git-fixes).\n- media: usb: dvd-usb: fix uninit-value bug in dibusb_read_eeprom_byte() (git-fixes).\n- media: uvcvideo: set capability in s_param (git-fixes).\n- mkspec: use variant in constraints template constraints are not applied consistently with kernel package variants. add variant to the constraints template as appropriate, and expand it in mkspec.\n- net/mlx5e: ethtool, avoid setting speed to 56gbase when autoneg off (git-fixes).\n- net/sched: tcindex: search key must be 16 bits (git-fixes).\n- net: bonding: debug: avoid printing debug logs when bond is not notifying peers (git-fixes).\n- net: fec: add missed clk_disable_unprepare in remove (git-fixes).\n- net: fec: better handle pm_runtime_get() failing in .remove() (git-fixes).\n- net: fec: fix clock count mis-match (git-fixes).\n- net: fec: fix use-after-free in fec_drv_remove (git-fixes).\n- net: hisilicon: fix dma_map_single failed on arm64 (git-fixes).\n- net: hisilicon: fix hip04-xmit never return tx_busy (git-fixes).\n- net: hisilicon: fix usage of uninitialized variable in function mdio_sc_cfg_reg_write() (git-fixes).\n- net: hisilicon: make hip04_tx_reclaim non-reentrant (git-fixes).\n- net: hns3: add compatible handling for mac vlan switch parameter configuration (git-fixes).\n- net: hns3: not allow ssu loopback while execute ethtool -t dev (git-fixes).\n- net: lpc-enet: fix printk format strings (git-fixes).\n- net: nfc: llcp: add lock when modifying device list (git-fixes).\n- net: phy: dp83867: enable robust auto-mdix (git-fixes).\n- net: phy: initialise phydev speed and duplex sanely (git-fixes).\n- net: sfp: add mutex to prevent concurrent state checks (git-fixes).\n- net: tundra: tsi108: use spin_lock_irqsave instead of spin_lock_irq in irq context (git-fixes).\n- net: usb: dm9601: fix wrong return value in dm9601_mdio_read (git-fixes).\n- nfsd: do not refuse to serve out of cache (bsc#1220957).\n- pci: prevent xhci driver from claiming amd vangogh usb3 drd device (git-fixes).\n- revert 'md/raid5: wait for md_sb_change_pending in raid5d' (git-fixes).\n- revert 'wcn36xx: disable bmps when encryption is disabled' (git-fixes).\n- rpm/constraints.in: set jobs for riscv to 8 the same workers are used for x86 and riscv and the riscv builds take ages. so align the riscv jobs count to x86.\n- rpm/kernel-binary.spec.in: install scripts/gdb when enabled in config (bsc#1219653) they are put into -devel subpackage. and a proper link to /usr/share/gdb/auto-load/ is created.\n- rpm/mkspec: sort entries in _multibuild otherwise it creates unnecessary diffs when tar-up-ing. it's of course due to readdir() using 'random' order as served by the underlying filesystem. see for example: https://build.opensuse.org/request/show/1144457/changes\n- rpm: use run_if_exists for all external scriptlets with that the scriptlets do not need to be installed for build.\n- s390: use the correct count for __iowrite64_copy() (git-fixes bsc#1220607).\n- stmmac: fix potential division by 0 (git-fixes).\n- tcp: fix tcp_mtup_probe_success vs wrong snd_cwnd (bsc#1218450).\n- usb: host: fotg210: fix the actual_length of an iso packet (git-fixes).\n- usb: host: fotg210: fix the endpoint's transactional opportunities calculation (git-fixes).\n- usb: hub: check for alternate port before enabling a_alt_hnp_support (bsc#1218527).\n- usb: musb: dsps: fix the probe error path (git-fixes).\n- usb: musb: musb_dsps: request_irq() after initializing musb (git-fixes).\n- usb: musb: tusb6010: check return value after calling platform_get_resource() (git-fixes).\n- usb: typec: tcpci: clear the fault status bit (git-fixes).\n- wcn36xx: fix (qos) null data frame bitrate/modulation (git-fixes).\n- wcn36xx: fix discarded frames due to wrong sequence number (git-fixes).\n- wcn36xx: fix rx bd rate mapping for 5ghz legacy rates (git-fixes).\n- x86/asm: add _asm_rip() macro for x86-64 (%rip) suffix (git-fixes).\n- x86/bugs: add asm helpers for executing verw (bsc#1213456).\n- x86/bugs: use alternative() instead of mds_user_clear static key (git-fixes). also add mds_user_clear to kabi severity as it's used purely for mitigation so it's low risk.\n- x86/cpu, kvm: move x86_feature_lfence_rdtsc to its native leaf (git-fixes).\n- x86/entry_32: add verw just before userspace transition (git-fixes).\n- x86/entry_64: Add VERW just before userspace transition (git-fixes).\n","affected":[{"package":{"name":"kernel-rt","ecosystem":"SUSE:Linux Enterprise Real Time 12 SP5","purl":"pkg:rpm/suse/kernel-rt&distro=SUSE%20Linux%20Enterprise%20Real%20Time%2012%20SP5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.12.14-10.171.1"}]}],"ecosystem_specific":{"binaries":[{"cluster-md-kmp-rt":"4.12.14-10.171.1","dlm-kmp-rt":"4.12.14-10.171.1","gfs2-kmp-rt":"4.12.14-10.171.1","kernel-devel-rt":"4.12.14-10.171.1","kernel-rt":"4.12.14-10.171.1","kernel-rt-base":"4.12.14-10.171.1","kernel-rt-devel":"4.12.14-10.171.1","kernel-rt_debug":"4.12.14-10.171.1","kernel-rt_debug-devel":"4.12.14-10.171.1","kernel-source-rt":"4.12.14-10.171.1","kernel-syms-rt":"4.12.14-10.171.1","ocfs2-kmp-rt":"4.12.14-10.171.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2024:0976-1.json"}},{"package":{"name":"kernel-rt_debug","ecosystem":"SUSE:Linux Enterprise Real Time 12 SP5","purl":"pkg:rpm/suse/kernel-rt_debug&distro=SUSE%20Linux%20Enterprise%20Real%20Time%2012%20SP5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.12.14-10.171.1"}]}],"ecosystem_specific":{"binaries":[{"cluster-md-kmp-rt":"4.12.14-10.171.1","dlm-kmp-rt":"4.12.14-10.171.1","gfs2-kmp-rt":"4.12.14-10.171.1","kernel-devel-rt":"4.12.14-10.171.1","kernel-rt":"4.12.14-10.171.1","kernel-rt-base":"4.12.14-10.171.1","kernel-rt-devel":"4.12.14-10.171.1","kernel-rt_debug":"4.12.14-10.171.1","kernel-rt_debug-devel":"4.12.14-10.171.1","kernel-source-rt":"4.12.14-10.171.1","kernel-syms-rt":"4.12.14-10.171.1","ocfs2-kmp-rt":"4.12.14-10.171.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2024:0976-1.json"}},{"package":{"name":"kernel-source-rt","ecosystem":"SUSE:Linux Enterprise Real Time 12 SP5","purl":"pkg:rpm/suse/kernel-source-rt&distro=SUSE%20Linux%20Enterprise%20Real%20Time%2012%20SP5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.12.14-10.171.1"}]}],"ecosystem_specific":{"binaries":[{"cluster-md-kmp-rt":"4.12.14-10.171.1","dlm-kmp-rt":"4.12.14-10.171.1","gfs2-kmp-rt":"4.12.14-10.171.1","kernel-devel-rt":"4.12.14-10.171.1","kernel-rt":"4.12.14-10.171.1","kernel-rt-base":"4.12.14-10.171.1","kernel-rt-devel":"4.12.14-10.171.1","kernel-rt_debug":"4.12.14-10.171.1","kernel-rt_debug-devel":"4.12.14-10.171.1","kernel-source-rt":"4.12.14-10.171.1","kernel-syms-rt":"4.12.14-10.171.1","ocfs2-kmp-rt":"4.12.14-10.171.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2024:0976-1.json"}},{"package":{"name":"kernel-syms-rt","ecosystem":"SUSE:Linux Enterprise Real Time 12 SP5","purl":"pkg:rpm/suse/kernel-syms-rt&distro=SUSE%20Linux%20Enterprise%20Real%20Time%2012%20SP5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.12.14-10.171.1"}]}],"ecosystem_specific":{"binaries":[{"cluster-md-kmp-rt":"4.12.14-10.171.1","dlm-kmp-rt":"4.12.14-10.171.1","gfs2-kmp-rt":"4.12.14-10.171.1","kernel-devel-rt":"4.12.14-10.171.1","kernel-rt":"4.12.14-10.171.1","kernel-rt-base":"4.12.14-10.171.1","kernel-rt-devel":"4.12.14-10.171.1","kernel-rt_debug":"4.12.14-10.171.1","kernel-rt_debug-devel":"4.12.14-10.171.1","kernel-source-rt":"4.12.14-10.171.1","kernel-syms-rt":"4.12.14-10.171.1","ocfs2-kmp-rt":"4.12.14-10.171.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2024:0976-1.json"}}],"references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2024/suse-su-20240976-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1050549"},{"type":"REPORT","url":"https://bugzilla.suse.com/1186484"},{"type":"REPORT","url":"https://bugzilla.suse.com/1200599"},{"type":"REPORT","url":"https://bugzilla.suse.com/1212514"},{"type":"REPORT","url":"https://bugzilla.suse.com/1213456"},{"type":"REPORT","url":"https://bugzilla.suse.com/1218450"},{"type":"REPORT","url":"https://bugzilla.suse.com/1218527"},{"type":"REPORT","url":"https://bugzilla.suse.com/1218915"},{"type":"REPORT","url":"https://bugzilla.suse.com/1219127"},{"type":"REPORT","url":"https://bugzilla.suse.com/1219146"},{"type":"REPORT","url":"https://bugzilla.suse.com/1219295"},{"type":"REPORT","url":"https://bugzilla.suse.com/1219653"},{"type":"REPORT","url":"https://bugzilla.suse.com/1219827"},{"type":"REPORT","url":"https://bugzilla.suse.com/1219835"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220187"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220238"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220240"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220241"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220250"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220330"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220340"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220344"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220409"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220421"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220436"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220444"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220459"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220468"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220482"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220526"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220570"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220575"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220599"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220607"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220613"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220638"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220641"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220649"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220700"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220735"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220767"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220796"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220825"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220831"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220845"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220860"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220861"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220863"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220870"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220930"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220931"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220932"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220957"},{"type":"REPORT","url":"https://bugzilla.suse.com/1221039"},{"type":"REPORT","url":"https://bugzilla.suse.com/1221040"},{"type":"REPORT","url":"https://bugzilla.suse.com/1221287"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-25162"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-36777"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-36784"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-46906"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-46915"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-46921"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-46924"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-46929"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-46932"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-46953"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-46974"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-46991"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-46992"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-47013"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-47054"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-47076"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-47077"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-47078"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-48627"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-28746"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-35827"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-46343"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-52340"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-52429"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-52443"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-52445"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-52449"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-52451"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-52464"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-52475"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-52478"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-52482"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-52502"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-52530"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-52531"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-52532"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-52574"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-52597"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-52605"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-0607"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-1151"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-23849"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-23851"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-26585"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-26595"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-26600"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-26622"}]}