{"schema_version":"1.7.3","id":"SUSE-SU-2024:1645-1","published":"2024-05-14T14:30:22Z","modified":"2026-02-04T03:57:46.092960Z","related":["CVE-2021-46955","CVE-2021-47041","CVE-2021-47074","CVE-2021-47113","CVE-2021-47131","CVE-2021-47184","CVE-2021-47194","CVE-2021-47198","CVE-2021-47201","CVE-2021-47203","CVE-2021-47206","CVE-2021-47207","CVE-2021-47212","CVE-2021-47216","CVE-2022-48631","CVE-2022-48638","CVE-2022-48650","CVE-2022-48651","CVE-2022-48654","CVE-2022-48672","CVE-2022-48686","CVE-2022-48687","CVE-2022-48693","CVE-2022-48695","CVE-2022-48701","CVE-2022-48702","CVE-2024-0639","CVE-2024-23307","CVE-2024-26610","CVE-2024-26688","CVE-2024-26689","CVE-2024-26739","CVE-2024-26744","CVE-2024-26816","CVE-2024-26840","CVE-2024-26852","CVE-2024-26862","CVE-2024-26898","CVE-2024-26903","CVE-2024-26906","CVE-2024-27043"],"upstream":["CVE-2021-46955","CVE-2021-47041","CVE-2021-47074","CVE-2021-47113","CVE-2021-47131","CVE-2021-47184","CVE-2021-47194","CVE-2021-47198","CVE-2021-47201","CVE-2021-47203","CVE-2021-47206","CVE-2021-47207","CVE-2021-47212","CVE-2021-47216","CVE-2022-48631","CVE-2022-48638","CVE-2022-48650","CVE-2022-48651","CVE-2022-48654","CVE-2022-48672","CVE-2022-48686","CVE-2022-48687","CVE-2022-48693","CVE-2022-48695","CVE-2022-48701","CVE-2022-48702","CVE-2024-0639","CVE-2024-23307","CVE-2024-26610","CVE-2024-26688","CVE-2024-26689","CVE-2024-26739","CVE-2024-26744","CVE-2024-26816","CVE-2024-26840","CVE-2024-26852","CVE-2024-26862","CVE-2024-26898","CVE-2024-26903","CVE-2024-26906","CVE-2024-27043"],"summary":"Security update for the Linux Kernel","details":"The SUSE Linux Enterprise 15 SP3 RT kernel was updated to receive various security bugfixes.\n\n\nThe following security bugs were fixed:\n\n- CVE-2024-26840: Fixed a memory leak in cachefiles_add_cache() (bsc#1222976).\n- CVE-2021-47113: Abort btrfs rename_exchange if we fail to insert the second ref (bsc#1221543).\n- CVE-2021-47131: Fixed a use-after-free after the TLS device goes down and up (bsc#1221545).\n- CVE-2024-26852: Fixed net/ipv6 to avoid possible UAF in ip6_route_mpath_notify() (bsc#1223057).\n- CVE-2021-46955: Fixed an out-of-bounds read with openvswitch, when fragmenting IPv4 packets (bsc#1220513).\n- CVE-2024-26862: Fixed packet annotate data-races around ignore_outgoing (bsc#1223111).\n- CVE-2024-0639: Fixed a denial-of-service vulnerability due to a deadlock found in sctp_auto_asconf_init in net/sctp/socket.c (bsc#1218917).\n- CVE-2024-27043: Fixed a use-after-free in edia/dvbdev in different places (bsc#1223824).\n- CVE-2022-48631: Fixed a bug in ext4, when parsing extents where eh_entries == 0 and eh_depth > 0 (bsc#1223475).\n- CVE-2024-23307: Fixed Integer Overflow or Wraparound vulnerability in x86 and ARM md, raid, raid5 modules (bsc#1219169).\n- CVE-2022-48651: Fixed an out-of-bound bug in ipvlan caused by unset skb->mac_header (bsc#1223513).\n- CVE-2024-26906: Disallowed vsyscall page read for copy_from_kernel_nofault() (bsc#1223202).\n- CVE-2024-26816: Fixed relocations in .notes section when building with CONFIG_XEN_PV=y by ignoring them (bsc#1222624).\n- CVE-2021-47207: Fixed a null pointer dereference on pointer block in gus (bsc#1222790).\n- CVE-2024-26610: Fixed memory corruption in wifi/iwlwifi (bsc#1221299).\n- CVE-2024-26689: Fixed a use-after-free in encode_cap_msg() (bsc#1222503).\n- CVE-2021-47041: Don't set sk_user_data without write_lock (bsc#1220755).\n- CVE-2021-47074: Fixed memory leak in nvme_loop_create_ctrl() (bsc#1220854).\n- CVE-2024-26744: Fixed null pointer dereference in srpt_service_guid parameter in rdma/srpt (bsc#1222449).\n\nThe following non-security bugs were fixed:\n\n- dm rq: do not queue request to blk-mq during DM suspend (bsc#1221113).\n- dm: rearrange core declarations for extended use from dm-zone.c (bsc#1221113).\n- net/tls: Remove the context from the list in tls_device_down (bsc#1221545).\n- tls: Fix context leak on tls_device_down (bsc#1221545).\n","affected":[{"package":{"name":"kernel-rt","ecosystem":"SUSE:Linux Enterprise Micro 5.1","purl":"pkg:rpm/suse/kernel-rt&distro=SUSE%20Linux%20Enterprise%20Micro%205.1"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.3.18-150300.169.1"}]}],"ecosystem_specific":{"binaries":[{"kernel-rt":"5.3.18-150300.169.1","kernel-source-rt":"5.3.18-150300.169.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2024:1645-1.json"}},{"package":{"name":"kernel-source-rt","ecosystem":"SUSE:Linux Enterprise Micro 5.1","purl":"pkg:rpm/suse/kernel-source-rt&distro=SUSE%20Linux%20Enterprise%20Micro%205.1"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.3.18-150300.169.1"}]}],"ecosystem_specific":{"binaries":[{"kernel-rt":"5.3.18-150300.169.1","kernel-source-rt":"5.3.18-150300.169.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2024:1645-1.json"}},{"package":{"name":"kernel-rt","ecosystem":"SUSE:Linux Enterprise Micro 5.2","purl":"pkg:rpm/suse/kernel-rt&distro=SUSE%20Linux%20Enterprise%20Micro%205.2"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.3.18-150300.169.1"}]}],"ecosystem_specific":{"binaries":[{"kernel-rt":"5.3.18-150300.169.1","kernel-source-rt":"5.3.18-150300.169.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2024:1645-1.json"}},{"package":{"name":"kernel-source-rt","ecosystem":"SUSE:Linux Enterprise Micro 5.2","purl":"pkg:rpm/suse/kernel-source-rt&distro=SUSE%20Linux%20Enterprise%20Micro%205.2"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.3.18-150300.169.1"}]}],"ecosystem_specific":{"binaries":[{"kernel-rt":"5.3.18-150300.169.1","kernel-source-rt":"5.3.18-150300.169.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2024:1645-1.json"}}],"references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2024/suse-su-20241645-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1190576"},{"type":"REPORT","url":"https://bugzilla.suse.com/1192145"},{"type":"REPORT","url":"https://bugzilla.suse.com/1200313"},{"type":"REPORT","url":"https://bugzilla.suse.com/1201489"},{"type":"REPORT","url":"https://bugzilla.suse.com/1203906"},{"type":"REPORT","url":"https://bugzilla.suse.com/1203935"},{"type":"REPORT","url":"https://bugzilla.suse.com/1204614"},{"type":"REPORT","url":"https://bugzilla.suse.com/1211592"},{"type":"REPORT","url":"https://bugzilla.suse.com/1218562"},{"type":"REPORT","url":"https://bugzilla.suse.com/1218917"},{"type":"REPORT","url":"https://bugzilla.suse.com/1219169"},{"type":"REPORT","url":"https://bugzilla.suse.com/1219170"},{"type":"REPORT","url":"https://bugzilla.suse.com/1219264"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220513"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220755"},{"type":"REPORT","url":"https://bugzilla.suse.com/1220854"},{"type":"REPORT","url":"https://bugzilla.suse.com/1221113"},{"type":"REPORT","url":"https://bugzilla.suse.com/1221299"},{"type":"REPORT","url":"https://bugzilla.suse.com/1221543"},{"type":"REPORT","url":"https://bugzilla.suse.com/1221545"},{"type":"REPORT","url":"https://bugzilla.suse.com/1222449"},{"type":"REPORT","url":"https://bugzilla.suse.com/1222482"},{"type":"REPORT","url":"https://bugzilla.suse.com/1222503"},{"type":"REPORT","url":"https://bugzilla.suse.com/1222559"},{"type":"REPORT","url":"https://bugzilla.suse.com/1222624"},{"type":"REPORT","url":"https://bugzilla.suse.com/1222666"},{"type":"REPORT","url":"https://bugzilla.suse.com/1222709"},{"type":"REPORT","url":"https://bugzilla.suse.com/1222790"},{"type":"REPORT","url":"https://bugzilla.suse.com/1222792"},{"type":"REPORT","url":"https://bugzilla.suse.com/1222829"},{"type":"REPORT","url":"https://bugzilla.suse.com/1222876"},{"type":"REPORT","url":"https://bugzilla.suse.com/1222881"},{"type":"REPORT","url":"https://bugzilla.suse.com/1222883"},{"type":"REPORT","url":"https://bugzilla.suse.com/1222894"},{"type":"REPORT","url":"https://bugzilla.suse.com/1222976"},{"type":"REPORT","url":"https://bugzilla.suse.com/1223016"},{"type":"REPORT","url":"https://bugzilla.suse.com/1223057"},{"type":"REPORT","url":"https://bugzilla.suse.com/1223111"},{"type":"REPORT","url":"https://bugzilla.suse.com/1223187"},{"type":"REPORT","url":"https://bugzilla.suse.com/1223202"},{"type":"REPORT","url":"https://bugzilla.suse.com/1223475"},{"type":"REPORT","url":"https://bugzilla.suse.com/1223482"},{"type":"REPORT","url":"https://bugzilla.suse.com/1223509"},{"type":"REPORT","url":"https://bugzilla.suse.com/1223513"},{"type":"REPORT","url":"https://bugzilla.suse.com/1223522"},{"type":"REPORT","url":"https://bugzilla.suse.com/1223824"},{"type":"REPORT","url":"https://bugzilla.suse.com/1223921"},{"type":"REPORT","url":"https://bugzilla.suse.com/1223923"},{"type":"REPORT","url":"https://bugzilla.suse.com/1223931"},{"type":"REPORT","url":"https://bugzilla.suse.com/1223941"},{"type":"REPORT","url":"https://bugzilla.suse.com/1223948"},{"type":"REPORT","url":"https://bugzilla.suse.com/1223952"},{"type":"REPORT","url":"https://bugzilla.suse.com/1223963"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-46955"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-47041"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-47074"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-47113"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-47131"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-47184"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-47194"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-47198"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-47201"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-47203"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-47206"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-47207"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-47212"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-47216"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-48631"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-48638"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-48650"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-48651"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-48654"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-48672"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-48686"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-48687"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-48693"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-48695"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-48701"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-48702"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-0639"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-23307"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-26610"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-26688"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-26689"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-26739"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-26744"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-26816"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-26840"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-26852"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-26862"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-26898"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-26903"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-26906"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-27043"}]}