Back Linuxsecurity SUSE Linux Enterprise 12 SP5 Kernel Important Security Update 2025:4123
## This update for the SUSE Linux Enterprise kernel 4.12.14-122.231 fixes various security issues The following security issues were fixed: * CVE-2022-48956: ipv6: avoid use-after-free in ip6_fragment() (bsc#1232637). * CVE-2022-49014: net: tun: Fix use-after-free in tun_detach() (bsc#1232818). * CVE-2022-49053: scsi: target: tcmu: Fix possible page UAF (bsc#1237930). * CVE-2022-49080: mm/mempolicy: fix mpol_new leak in shared_policy_replace (bsc#1238324). * CVE-2022-49179: block, bfq: don't move oom_bfqq (bsc#1241331). * CVE-2022-49465: blk-throttle: set BIO_THROTTLED when bio has been throttled (bsc#1238920). * CVE-2022-49545: ALSA: usb-audio: cancel pending work at closing a MIDI substream (bsc#1238730). * CVE-2022-49563: crypto: qat - add param check for RSA (bsc#1238788). Read the Full Advisory
## This update for the SUSE Linux Enterprise kernel 4.12.14-122.231 fixes various security issues The following security issues were fixed: * CVE-2022-48956: ipv6: avoid use-after-free in ip6_fragment() (bsc#1232637). * CVE-2022-49014: net: tun: Fix use-after-free in tun_detach() (bsc#1232818). * CVE-2022-49053: scsi: target: tcmu: Fix possible page UAF (bsc#1237930). * CVE-2022-49080: mm/mempolicy: fix mpol_new leak in shared_policy_replace (bsc#1238324). * CVE-2022-49179: block, bfq: don't move oom_bfqq (bsc#1241331). * CVE-2022-49465: blk-throttle: set BIO_THROTTLED when bio has been throttled (bsc#1238920). * CVE-2022-49545: ALSA: usb-audio: cancel pending work at closing a MIDI substream (bsc#1238730). * CVE-2022-49563: crypto: qat - add param check for RSA (bsc#1238788). Read the Full Advisory
* bsc#1103203 * bsc#1149841 * bsc#1230998 * bsc#1231204 * bsc#1231676 * bsc#1231862 * bsc#1231943 * bsc#1231993 * bsc#1232637 * bsc#1232818 * bsc#1232929 * bsc#1233019 * bsc#1233072 * bsc#1233679 * bsc#1233680 * bsc#1233708 * bsc#1233712 * bsc#1234847 * bsc#1234854 * bsc#1234892 * bsc#1235005 * bsc#1235062 * bsc#1235218 * bsc#1235231 * bsc#1235250 * bsc#1235431 * bsc#1235921 * bsc#1236783 * bsc#1237930 * bsc#1238324 * bsc#1238730 * bsc#1238788 * bsc#1238790 * bsc#1238912 * bsc#1238920 * bsc#1239077 * bsc#1240744 * bsc#1240840 * bsc#1241331 * bsc#1243650 * bsc#1245218 * bsc#1245350 * bsc#1245775 * bsc#1245776 * bsc#1245793 * bsc#1245794 * bsc#1245797 * bsc#1246001 * bsc#1246030 * bsc#1246356 * bsc#1247315 * bsc#1247350 * bsc#1247351 * bsc#1247499 * bsc#1248673 * bsc#1248749 * bsc#1249207 * bsc#1249208 Read the Full Advisory
Read the Full Advisory
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
