[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

254802

 
 

909

 
 

198617

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2021:0354-1 -- SLES kernel

ID: oval:org.secpod.oval:def:89049470Date: (C)2023-09-27   (M)2024-05-22
Class: PATCHFamily: unix




The SUSE Linux Enterprise 15 SP2 kernel was updated to receive various security and bugfixes. The following security bugs were fixed: - CVE-2021-3347: A use-after-free was discovered in the PI futexes during fault handling, allowing local users to execute code in the kernel . - CVE-2021-3348: Fixed a use-after-free in nbd_add_socket that could be triggered by local attackers via an I/O request at a certain point during device setup . - CVE-2021-20177: Fixed a kernel panic related to iptables string matching rules. A privileged user could insert a rule which could lead to denial of service . - CVE-2021-0342: In tun_get_user of tun.c, there is possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution privileges required. - CVE-2020-27835: A use-after-free in the infiniband hfi1 driver was found, specifically in the way user calls Ioctl after open dev file and fork. A local user could use this flaw to crash the system . - CVE-2020-25639: Fixed a NULL pointer dereference via nouveau ioctl . - CVE-2020-29569: Fixed a potential privilege escalation and information leaks related to the PV block backend, as used by Xen . - CVE-2020-29568: Fixed a denial of service issue, related to processing watch events . - CVE-2020-25211: Fixed a flaw where a local attacker was able to inject conntrack netlink configuration that could cause a denial of service or trigger the use of incorrect protocol numbers in ctnetlink_parse_tuple_filter . The following non-security bugs were fixed: - ACPI/IORT: Do not blindly trust DMA masks from firmware . - ACPI: scan: add stub acpi_create_platform_device for !CONFIG_ACPI . - ACPI: scan: Harden acpi_device_add against device ID overflows . - ACPI: scan: Make acpi_bus_get_device clear return pointer on error . - ACPI: sysfs: Prefer compatible modalias . - ALSA: doc: Fix reference to mixart.rst . - ALSA: fireface: Fix integer overflow in transmit_midi_msg . - ALSA: firewire-tascam: Fix integer overflow in midi_port_work . - ALSA: hda: Add Cometlake-R PCI ID . - ALSA: hda/conexant: add a new hda codec CX11970 . - ALSA: hda/hdmi - enable runtime pm for CI AMD display audio . - ALSA: hda/realtek: Add mute LED quirk for more HP laptops . - ALSA: hda/realtek: Add two Intel Reference board SSID in the ALC256 . - ALSA: hda/realtek: Enable headset of ASUS B1400CEPE with ALC256 . - ALSA: hda/realtek: Enable mute and micmute LED on HP EliteBook 850 G7 . - ALSA: hda/realtek: fix right sounds and mute/micmute LEDs for HP machines . - ALSA: hda/realtek - Fix speaker volume control on Lenovo C940 . - ALSA: hda/realtek - Limit int mic boost on Acer Aspire E5-575T . - ALSA: hda/realtek - Modify Dell platform name . - ALSA: hda/realtek: Remove dummy lineout on Acer TravelMate P648/P658 . - ALSA: hda/realtek - Supported Dell fixed type headset . - ALSA: hda/tegra: fix tegra-hda on tegra30 soc . - ALSA: hda/via: Add minimum mute flag . - ALSA: hda/via: Apply the workaround generically for Clevo machines . - ALSA: hda/via: Fix runtime PM for Clevo W35xSS . - ALSA: pcm: Clear the full allocated memory at hw_params . - ALSA: pcm: fix hw_rule deps kABI . - ALSA: pcm: One more dependency for hw constraints . - ALSA: seq: oss: Fix missing error check in snd_seq_oss_synth_make_info . - ALSA: usb-audio: Add quirk for BOSS AD-10 . - ALSA: usb-audio: Add quirk for RC-505 . - ALSA: usb-audio: Always apply the hw constraints for implicit fb sync . - ALSA: usb-audio: Annotate the endpoint index in audioformat . - ALSA: usb-audio: Avoid implicit feedback on Pioneer devices . - ALSA: usb-audio: Avoid unnecessary interface re-setup . - ALSA: usb-audio: Choose audioformat of a counter-part substream . - ALSA: usb-audio: Fix hw constraints dependencies . - ALSA: usb-audio: Fix implicit feedback sync setup for Pioneer devices . - ALSA: usb-audio: Fix the missing endpoints creations for quirks . - ALSA: usb-audio: Fix UAC1 rate setup for secondary endpoints . - ALSA: usb-audio: Fix UBSAN warnings for MIDI jacks . - ALSA: usb-audio: Set sample rate for all sharing EPs on UAC1 . - arch/x86/lib/usercopy_64.c: fix __copy_user_flushcache cache writeback . - arm64: mm: Fix ARCH_LOW_ADDRESS_LIMIT when !CONFIG_ZONE_DMA . - arm64: pgtable: Ensure dirty bit is preserved across pte_wrprotect . - arm64: pgtable: Fix pte_accessible . - ASoC: ak4458: correct reset polarity . - ASoC: dapm: remove widget from dirty list on free . - ASoC: Intel: fix error code cnl_set_dsp_D0 . - ASoC: meson: axg-tdm-interface: fix loopback . - bitmap: remove unused function declaration . - Bluetooth: hci_h5: close serdev device and free hu in h5_close . - Bluetooth: revert: hci_h5: close serdev device and free hu in h5_close . - bnxt_en: Fix AER recovery . - bpf: Do not leak memory in bpf getsockopt when optlen == 0 . - bpf: Fix helper bpf_map_peek_elem_proto pointing to wrong callback . - btrfs: fix missing delalloc new bit for new delalloc ranges . - btrfs: make btrfs_dirty_pages take btrfs_inode . - btrfs: make btrfs_set_extent_delalloc take btrfs_inode . - btrfs: send: fix invalid clone operations when cloning from the same file and root . - btrfs: send: fix wrong file path when there is an inode with a pending rmdir . - bus/fsl_mc: Do not rely on caller to provide non NULL mc_io . - cachefiles: Drop superfluous readpages aops NULL check . - can: dev: prevent potential information leak in can_fill_info . - can: vxcan: vxcan_xmit: fix use after free bug . - CDC-NCM: remove connected log message . - clk: tegra30: Add hda clock default rates to clock driver . - crypto: asym_tpm: correct zero out potential secrets . - crypto: ecdh - avoid buffer overflow in ecdh_set_secret . - dmaengine: at_hdmac: add missing kfree call in at_dma_xlate . - dmaengine: at_hdmac: add missing put_device call in at_dma_xlate . - dmaengine: at_hdmac: Substitute kzalloc with kmalloc . - dmaengine: dw-edma: Fix use after free in dw_edma_alloc_chunk . - dmaengine: mediatek: mtk-hsdma: Fix a resource leak in the error handling path of the probe function . - dmaengine: xilinx_dma: check dma_async_device_register return value . - dmaengine: xilinx_dma: fix incompatible param warning in _child_probe . - dmaengine: xilinx_dma: fix mixed_enum_type coverity warning . - drivers/base/memory.c: indicate all memory blocks as removable . - drivers/perf: Fix kernel panic when rmmod PMU modules during perf sampling . - drivers/perf: hisi: Permit modular builds of HiSilicon uncore drivers . - Update config files. - supported.conf: - drm: Added orientation quirk for ASUS tablet model T103HAF . - drm/amd/display: Add missing pflip irq for dcn2.0 . - drm/amd/display: Avoid MST manager resource leak . - drm/amd/display: dal_ddc_i2c_payloads_create can fail causing panic . - drm/amd/display: dchubbub p-state warning during surface planes switch . - drm/amd/display: Do not double-buffer DTO adjustments . - drm/amd/display: Do not invoke kgdb_breakpoint unconditionally . - drm/amd/display: Fix memleak in amdgpu_dm_mode_config_init . - drm/amd/display: Free gamma after calculating legacy transfer function . - drm/amd/display: HDMI remote sink need mode validation for Linux . - drm/amd/display: Increase timeout for DP Disable . - drm/amd/display: Reject overlay plane configurations in multi-display scenarios . - drm/amd/display: remove useless if/else . - drm/amd/display: Retry AUX write when fail occurs . - drm/amd/display: Stop if retimer is not available . - drm/amd/display: update nv1x stutter latencies . - drm/amdgpu: add DID for navi10 blockchain SKU . - drm/amdgpu: correct the gpu reset handling for job != NULL case . - drm/amdgpu/dc: Require primary plane to be enabled whenever the CRTC is . - drm/amdgpu: do not map BO in reserved region . - drm/amdgpu: fix a GPU hang issue when remove device . - drm/amdgpu: Fix bug in reporting voltage for CIK . - drm/amdgpu: Fix bug where DPM is not enabled after hibernate and resume . - drm/amdgpu: fix build_coefficients argument . - drm/amdgpu: fix calltrace during kmd unload . - drm/amdgpu: increase atombios cmd timeout . - drm/amdgpu: increase the reserved VM size to 2MB . - drm/amdgpu: perform srbm soft reset always on SDMA resume . - drm/amdgpu/powerplay: fix AVFS handling with custom powerplay table . - drm/amdgpu/powerplay/smu7: fix AVFS handling with custom powerplay table . - drm/amdgpu: prevent double kfree ttm- greater than sg . - drm/amdgpu/psp: fix psp gfx ctrl cmds . - drm/amdgpu/sriov add amdgpu_amdkfd_pre_reset in gpu reset . - drm/amdkfd: fix a memory leak issue . - drm/amdkfd: Fix leak in dmabuf import . - drm/amdkfd: fix restore worker race condition . - drm/amdkfd: Use same SQ prefetch setting as amdgpu . - drm/amd/pm: avoid false alarm due to confusing softwareshutdowntemp setting . - drm/aspeed: Fix Kconfig warning subsequent build errors - drm/aspeed: Fix Kconfig warning subsequent build errors . - drm/atomic: put state on error path . - drm: bridge: dw-hdmi: Avoid resetting force in the detect function - drm/bridge/synopsys: dsi: add support for non-continuous HS clock . - drm/brige/megachips: Add checking if ge_b850v3_lvds_init is working correctly . - drm/dp_aux_dev: check aux_dev before use in - drm/dp_aux_dev: check aux_dev before use in drm_dp_aux_dev_get_by_minor . - drm/etnaviv: always start/stop scheduler in timeout processing . - drm/exynos: dsi: Remove bridge node reference in error handling path in probe function . - drm/gma500: fix double free of gma_connector Backporting notes: * context changes - drm/gma500: fix double free of gma_connector . - drm/gma500: Fix out-of-bounds access to struct drm_device.vblank[] . - drm/i915: Avoid memory leak with more than 16 workarounds on a list . - drm/i915: Break up error capture compression loops with cond_resched . - drm/i915: Check for all subplatform bits . - drm/i915: clear the gpu reloc batch . - drm/i915: Correctly set SFC capability for video engines Backporting notes: * context changes - drm/i915/display/dp: Compute the correct slice count for VDSC on DP . - drm/i915: Drop runtime-pm assert from vgpu io accessors . - drm/i915/dsi: Use unconditional msleep for the panel_on_delay when there is no reset-deassert MIPI-sequence . - drm/i915: Filter wake_flags passed to default_wake_function . - drm/i915: Fix mismatch between misplaced vma check and vma insert . - drm/i915: Force VT"d workarounds when running as a guest OS . - drm/i915/gt: Declare gen9 has 64 mocs entries! . - drm/i915/gt: Delay execlist processing for tgl . - drm/i915/gt: Free stale request on destroying the virtual engine . - drm/i915/gt: Prevent use of engine- greater than wa_ctx after error . - drm/i915/gt: Program mocs:63 for cache eviction on gen9 . - drm/i915/gvt: return error when failing to take the module reference . - drm/i915/gvt: Set ENHANCED_FRAME_CAP bit . - drm/i915: Handle max_bpc==16 . - drm/i915/selftests: Avoid passing a random 0 into ilog2 . - drm/mcde: Fix handling of platform_get_irq error - drm/mcde: Fix handling of platform_get_irq error . - drm/meson: dw-hdmi: Register a callback to disable the regulator . - drm/msm/a5xx: Always set an OPP supported hardware value . - drm/msm/a6xx: fix a potential overflow issue . - drm/msm/a6xx: fix gmu start on newer firmware . - drm/msm: add shutdown support for display platform_driver . - drm/msm: Disable preemption on all 5xx targets . - drm/msm/dpu: Add newline to printks . - drm/msm/dpu: Fix scale params in plane validation . - drm/msm/dsi_phy_10nm: implement PHY disabling . - drm/msm/dsi_pll_10nm: restore VCO rate during restore_state . - drm/msm: fix leaks if initialization fails . - drm/nouveau/bios: fix issue shadowing expansion ROMs . - drm/nouveau/debugfs: fix runtime pm imbalance on error . - drm/nouveau/dispnv50: fix runtime pm imbalance on error . - drm/nouveau: fix runtime pm imbalance on error . - drm/nouveau/i2c/gm200: increase width of aux semaphore owner fields . - drm/nouveau/kms/nv50-: fix case where notifier buffer is at offset 0 . - drm/nouveau/mem: guard against NULL pointer access in mem_del . - drm/nouveau/mmu: fix vram heap sizing . - drm/nouveau/nouveau: fix the start/end range for migration . - drm/nouveau/privring: ack interrupts the same way as RM . - drm/nouveau/svm: fail NOUVEAU_SVM_INIT ioctl on unsupported devices . - drm/omap: dmm_tiler: fix return error code in omap_dmm_probe . - drm/omap: dss: Cleanup DSS ports on initialisation failure . - drm/omap: fix incorrect lock state . - drm/omap: fix possible object reference leak . - drm/panfrost: add amlogic reset quirk callback . - drm: rcar-du: Set primary plane zpos immutably at initializing . - drm/rockchip: Avoid uninitialized use of endpoint id in LVDS - drm/rockchip: Avoid uninitialized use of endpoint id in LVDS . - drm/scheduler: Avoid accessing freed bad job . - drm/sun4i: dw-hdmi: fix error return code in sun8i_dw_hdmi_bind - drm/sun4i: frontend: Fix the scaler phase on A33 . - drm/sun4i: frontend: Reuse the ch0 phase for RGB formats . - drm/sun4i: frontend: Rework a bit the phase data . - drm/sun4i: mixer: Extend regmap max_register . - drm/syncobj: Fix use-after-free . - drm/tegra: replace idr_init by idr_init_base . - drm/tegra: sor: Disable clocks on error in tegra_sor_init . - drm/ttm: fix eviction valuable range check . - drm/tve200: Fix handling of platform_get_irq error - drm/tve200: Fix handling of platform_get_irq error . - drm/tve200: Stabilize enable/disable . - drm/vc4: drv: Add error handding for bind . - e1000e: bump up timeout to wait when ME un-configures ULP mode . - EDAC/amd64: Fix PCI component registration . - ehci: fix EHCI host controller initialization sequence . - ethernet: ucc_geth: fix use-after-free in ucc_geth_remove . - Exclude Symbols.list again. Removing the exclude builds vanilla/linux-next builds. Fixes: 55877625c800 - firmware: imx: select SOC_BUS to fix firmware build . - floppy: reintroduce O_NDELAY fix . - futex: Ensure the correct return value from futex_lock_pi . - futex: Handle faults correctly for PI futexes . - futex: Provide and use pi_state_update_owner . - futex: Remove needless goto"s . - futex: Remove unused empty compat_exit_robust_list . - futex: Replace pointless printk in fixup_owner . - futex: Simplify fixup_pi_state_owner . - futex: Use pi_state_update_owner in put_pi_state . - HID: Ignore battery for Elan touchscreen on ASUS UX550 . - HID: logitech-dj: add the G602 receiver . - HID: multitouch: Apply MT_QUIRK_CONFIDENCE quirk for multi-input devices . - HID: multitouch: do not filter mice nodes . - HID: multitouch: Enable multi-input for Synaptics pointstick/touchpad device . - HID: multitouch: Remove MT_CLS_WIN_8_DUAL . - HID: wacom: Constify attribute_groups . - HID: wacom: Correct NULL dereference on AES pen proximity . - HID: wacom: do not call hid_set_drvdata . - HID: wacom: Fix memory leakage caused by kfifo_alloc . - hwmon: Ensure that calculation does not discard big period values . - i2c: bpmp-tegra: Ignore unknown I2C_M flags . - i2c: i801: Fix the i2c-mux gpiod_lookup_table not being properly terminated . - i2c: octeon: check correct size of maximum RECV_LEN packet . - i2c: sprd: use a specific timeout to avoid system hang up issue . - i3c master: fix missing destroy_workqueue on error in i3c_master_register . - IB/hfi1: Remove kobj from hfi1_devdata . - IB/hfi1: Remove module parameter for KDETH qpns . - ice: avoid premature Rx buffer reuse . - ice, xsk: clear the status bits for the next_to_use descriptor . - iio: ad5504: Fix setting power-down state . - iomap: fix WARN_ON_ONCE from unprivileged users . - iommu/vt-d: Fix a bug for PDP check in prq_event_thread . - ionic: account for vlan tag len in rx buffer len . - kABI fixup for dwc3 introduction of DWC_usb32 . - kdb: Fix pager search for multi-line strings . - kgdb: Drop malformed kernel doc comment . - kprobes: tracing/kprobes: Fix to kill kprobes on initmem after boot . - KVM: nVMX: Reload vmcs01 if getting vmcs12"s pages fails . - KVM: s390: pv: Mark mm as protected after the set secure parameters and improve cleanup . - KVM: SVM: Initialize prev_ga_tag before use . - leds: trigger: fix potential deadlock with libata . - lib/genalloc: fix the overflow when size is too big . - lib/string: remove unnecessary #undefs . - lockd: do not use interval-based rebinding over TCP . - mac80211: check if atf has been disabled in __ieee80211_schedule_txq . - mac80211: do not drop tx nulldata packets on encrypted links . - md: fix a warning caused by a race between concurrent md_ioctls . - media: dvb-usb: Fix memory leak at error in dvb_usb_device_init . - media: dvb-usb: Fix use-after-free access . - media: gp8psk: initialize stats at power control logic . - media: rc: ensure that uevent can be read directly after rc device register . - misc: vmw_vmci: fix kernel info-leak by initializing dbells in vmci_ctx_get_chkpt_doorbells . - misdn: dsp: select CONFIG_BITREVERSE . - mmc: core: do not initialize block size from ext_csd if not present . - mmc: sdhci-xenon: fix 1.8v regulator stabilization . - mm: memcontrol: fix missing wakeup polling thread . - mm/vmalloc: Fix unlock order in s_stop . - module: delay kobject uevent until after module init call . - mt7601u: fix kernel crash unplugging the device . - mt7601u: fix rx buffer refcounting . - net/af_iucv: fix null pointer dereference on shutdown . - net/af_iucv: set correct sk_protocol for child sockets . - net: fix proc_fs init handling in af_packet and tls . - net: hns3: fix a phy loopback fail issue . - net: hns3: remove a misused pragma packed . - net/mlx5e: ethtool, Fix restriction of autoneg with 56G . - net: mscc: ocelot: allow offloading of bridge on top of LAG . - net/smc: cancel event worker during device removal . - net/smc: check for valid ib_client_data . - net/smc: fix cleanup for linkgroup setup failures . - net/smc: fix direct access to ib_gid_addr- greater than ndev in smc_ib_determine_gid . - net/smc: fix dmb buffer shortage . - net/smc: fix sleep bug in smc_pnet_find_roce_resource . - net/smc: fix sock refcounting in case of termination . - net/smc: fix valid DMBE buffer sizes . - net/smc: no peer ID in CLC decline for SMCD . - net/smc: remove freed buffer from list . - net/smc: reset sndbuf_desc if freed . - net/smc: set rx_off for SMCR explicitly . - net/smc: switch smcd_dev_list spinlock to mutex . - net/smc: transfer fasync_list in case of fallback . - net: sunrpc: Fix "snprintf" return value check in "do_xprt_debugfs" . - net: sunrpc: interpret the return value of kstrtou32 correctly . - net: usb: qmi_wwan: add Quectel EM160R-GL . - net: vlan: avoid leaks on register_vlan_dev failures . - NFC: fix possible resource leak . - NFC: fix resource leak when target index is invalid . - NFS4: Fix use-after-free in trace_event_raw_event_nfs4_set_lock . - nfs_common: need lock during iterate through the list . - nfsd4: readdirplus shouldn"t return parent of export . - nfsd: Fix message level for normal termination . - NFS: nfs_delegation_find_inode_server must first reference the superblock . - NFS: nfs_igrab_and_active must first reference the superblock . - NFS/pNFS: Fix a leak of the layout "plh_outstanding" counter . - NFS/pNFS: Fix a typo in ff_layout_resend_pnfs_read . - NFS: switch nfsiod to be an UNBOUND workqueue . - NFSv4.2: condition READDIR"s mask for security label based on LSM state . - NFSv4: Fix the alignment of page data in the getdeviceinfo reply . - nvme-multipath: fix bogus request queue reference put . - nvme-rdma: avoid request double completion for concurrent nvme_rdma_timeout . - nvme-tcp: avoid request double completion for concurrent nvme_tcp_timeout . - platform/x86: i2c-multi-instantiate: Do not create platform device for INT3515 ACPI nodes . - platform/x86: ideapad-laptop: Disable touchpad_switch for ELAN0634 . - platform/x86: intel-vbtn: Drop HP Stream x360 Convertible PC 11 from allow-list . - platform/x86: intel-vbtn: Fix SW_TABLET_MODE always reporting 1 on some HP x360 models . - PM: hibernate: flush swap writer after marking . - pNFS: Mark layout for return if return-on-close was not sent . - powerpc: Fix build error in paravirt.h . - powerpc/paravirt: Use is_kvm_guest in vcpu_is_preempted . - powerpc: Refactor is_kvm_guest declaration to new header . - powerpc: Reintroduce is_kvm_guest as a fast-path check . - powerpc: Rename is_kvm_guest to check_kvm_guest . - power: vexpress: add suppress_bind_attrs to true . - prom_init: enable verbose prints . - ptrace: reintroduce usage of subjective credentials in ptrace_has_cap . - ptrace: Set PF_SUPERPRIV when checking capability . - r8152: Add Lenovo Powered USB-C Travel Hub . - r8169: work around power-saving bug on some chip versions . - regmap: debugfs: Fix a memory leak when calling regmap_attach_dev . - regmap: debugfs: Fix a reversed if statement in regmap_debugfs_init . - Revive usb-audio Keep Interface mixer . - rtc: pl031: fix resource leak in pl031_probe . - rtc: sun6i: Fix memleak in sun6i_rtc_clk_init . - rtmutex: Remove unused argument from rt_mutex_proxy_unlock . - s390/cio: fix use-after-free in ccw_device_destroy_console . - s390/dasd: fix hanging device offline processing . - s390/dasd: fix list corruption of lcu list . - s390/dasd: fix list corruption of pavgroup group list . - s390/dasd: prevent inconsistent LCU device data . - s390/kexec_file: fix diag308 subcode when loading crash kernel . - s390/qeth: consolidate online/offline code . - s390/qeth: do not raise NETDEV_REBOOT event from L3 offline path . - s390/qeth: fix deadlock during recovery . - s390/qeth: fix L2 header access in qeth_l3_osa_features_check . - s390/qeth: fix locking for discipline setup / removal . - s390/smp: perform initial CPU reset also for SMT siblings . - sched/fair: Check for idle core in wake_affine . - scsi: ibmvfc: Set default timeout to avoid crash during migration . - scsi: lpfc: Enhancements to LOG_TRACE_EVENT for better readability . - scsi: lpfc: Fix auto sli_mode and its effect on CONFIG_PORT for SLI3 . - scsi: lpfc: Fix crash when a fabric node is released prematurely . - scsi: lpfc: Fix crash when nvmet transport calls host_release . - scsi: lpfc: Fix error log messages being logged following SCSI task mgnt . - scsi: lpfc: Fix FW reset action if I/Os are outstanding . - scsi: lpfc: Fix NVMe recovery after mailbox timeout . - scsi: lpfc: Fix PLOGI S_ID of 0 on pt2pt config . - scsi: lpfc: Fix target reset failing . - scsi: lpfc: Fix vport create logging . - scsi: lpfc: Implement health checking when aborting I/O . - scsi: lpfc: Prevent duplicate requests to unregister with cpuhp framework . - scsi: lpfc: Refresh ndlp when a new PRLI is received in the PRLI issue state . - scsi: lpfc: Simplify bool comparison . - scsi: lpfc: Update lpfc version to 12.8.0.7 . - scsi: lpfc: Use the nvme-fc transport supplied timeout for LS requests . - scsi: qla2xxx: Fix description for parameter ql2xenforce_iocb_limit . - scsi: scsi_transport_srp: Do not block target in failfast state . - selftests/ftrace: Select an existing function in kprobe_eventname test . - selftests: net: fib_tests: remove duplicate log test . - selftests/powerpc: Add a test of bad accesses . - selftests/powerpc: Add a test of spectre_v2 mitigations . - selftests/powerpc: Ignore generated files . - selftests/powerpc: Move Hash MMU check to utilities . - selftests/powerpc: Move set_dscr into rfi_flush.c . - selftests/powerpc: Only test lwm/stmw on big endian . - selftests/powerpc: spectre_v2 test must be built 64-bit . - serial: mvebu-uart: fix tx lost characters at power off . - spi: cadence: cache reference clock rate during probe . - spi: stm32: FIFO threshold level - fix align packet size . - staging: mt7621-dma: Fix a resource leak in an error handling path . - staging: wlan-ng: fix out of bounds read in prism2sta_probe_usb . - SUNRPC: Clean up the handling of page padding in rpc_prepare_reply_pages . - sunrpc: fix xs_read_xdr_buf for partial pages receive . - SUNRPC: rpc_wake_up should wake up tasks in the correct order . - swiotlb: fix x86: Do not panic if can not alloc buffer for swiotlb . - swiotlb: using SIZE_MAX needs limits.h included . - timers: Preserve higher bits of expiration on index calculation . - timers: Use only bucket expiry for base- greater than next_expiry value . - udp: Prevent reuseport_select_sock from reading uninitialized socks . - USB: cdc-acm: blacklist another IR Droid device . - USB: cdc-wdm: Fix use after free in service_outstanding_interrupt . - usb: chipidea: ci_hdrc_imx: add missing put_device call in usbmisc_get_init_data . - USB: dummy-hcd: Fix uninitialized array use in init . - usb: dwc3: Add support for DWC_usb32 IP . - usb: dwc3: core: Properly default unspecified speed . - usb: dwc3: ulpi: Use VStsDone to detect PHY regs access completion . - usb: dwc3: Update soft-reset wait polling rate . - USB: ehci: fix an interrupt calltrace error . - usb: gadget: aspeed: fix stop dma register setting . - usb: gadget: configfs: Fix use-after-free issue with udc_name . - usb: gadget: configfs: Preserve function ordering after bind failure . - usb: gadget: enable super speed plus . - usb: gadget: Fix spinlock lockup on usb_function_deactivate . - usb: gadget: f_uac2: reset wMaxPacketSize . - usb: gadget: function: printer: Fix a memory leak for interface descriptor . - USB: gadget: legacy: fix return error code in acm_ms_bind . - usb: gadget: select CONFIG_CRC32 . - usb: gadget: u_ether: Fix MTU size mismatch with RX packet size . - USB: serial: iuu_phoenix: fix DMA from stack . - USB: serial: option: add LongSung M5710 module support . - USB: serial: option: add Quectel EM160R-GL . - usb: typec: Fix copy paste error for NVIDIA alt-mode description . - usb: uas: Add PNY USB Portable SSD to unusual_uas . - usb: udc: core: Use lock when write to soft_connect . - usb: usbip: vhci_hcd: protect shift size . - USB: usblp: fix DMA to stack . - USB: xhci: fix U1/U2 handling for hardware with XHCI_INTEL_HOST quirk set . - USB: yurex: fix control-URB timeout handling . - vfio iommu: Add dma available capability . - vfio/pci: Implement ioeventfd thread handler for contended memory lock . - vfio-pci: Use io_remap_pfn_range for PCI IO memory . - video: fbdev: atmel_lcdfb: fix return error code in atmel_lcdfb_of_init . - video: fbdev: fix OOB read in vga_8planes_imageblit . - video: fbdev: pvr2fb: initialize variables . - video: fbdev: vga16fb: fix setting of pixclock because a pass-by-value error . - wan: ds26522: select CONFIG_BITREVERSE . - wil6210: select CONFIG_CRC32 . - x86/apic: Fix x2apic enablement without interrupt remapping . - x86/cpu/amd: Call init_amd_zn om Family 19h processors too . - x86/cpu/amd: Set __max_die_per_package on AMD . - x86/hyperv: Fix kexec panic/hang issues . - x86/kprobes: Restore BTF if the single-stepping is cancelled . - x86/mm: Fix leak of pmd ptlock . - x86/mm/numa: Remove uninitialized_var usage . - x86/mtrr: Correct the range check before performing MTRR type lookups . - x86/resctrl: Do not move a task to the same resource group . - x86/resctrl: Use an IPI instead of task_work_add to update PQR_ASSOC MSR . - x86/topology: Make __max_die_per_package available unconditionally . - x86/xen: avoid warning in Xen pv guest with CONFIG_AMD_MEM_ENCRYPT enabled . - xen-blkfront: allow discard-* nodes to be optional . - xen/privcmd: allow fetching resource sizes . - xfs: show the proper user quota options . - xhci: Give USB2 ports time to enter U3 in bus suspend . - xhci: make sure TRB is fully written before giving it to the controller . - xhci: tegra: Delay for disabling LFPS detector . Special Instructions and Notes: Please reboot the system after installing this update.

Platform:
SUSE Linux Enterprise Server 15 SP2
SUSE Linux Enterprise Desktop 15 SP2
Product:
kernel
Reference:
SUSE-SU-2021:0354-1
CVE-2020-25211
CVE-2020-25639
CVE-2020-27835
CVE-2020-29568
CVE-2020-29569
CVE-2021-0342
CVE-2021-20177
CVE-2021-3347
CVE-2021-3348
CVE    9
CVE-2021-20177
CVE-2021-3347
CVE-2021-3348
CVE-2020-25211
...

© SecPod Technologies