File _patchinfo of Package patchinfo.33098

<patchinfo incident="33098">
  <issue id="1218487" tracker="bnc">VUL-0: CVE-2023-6531: kernel live patch: GC's deletion of an SKB races with unix_stream_read_generic()  leading to UAF</issue>
  <issue id="1218610" tracker="bnc">VUL-0: CVE-2023-51779: kernel live patch: bluetooth: bt_sock_ioctl race condition leads to use-after-free in bt_sock_recvmsg</issue>
  <issue id="2023-51779" tracker="cve" />
  <issue id="2023-6531" tracker="cve" />
  <category>security</category>
  <rating>important</rating>
  <packager>nstange</packager>
  <description>This update for the Linux Kernel 5.14.21-150400_24_97 fixes several issues.

The following security issues were fixed:

- CVE-2023-6531: Fixed a use-after-free flaw due to a race problem in the unix garbage collector's deletion of SKB races with unix_stream_read_generic()on the socket that the SKB is queued on (bsc#1218487).
- CVE-2023-51779: Fixed a use-after-free because of a bt_sock_ioctl race condition in bt_sock_recvmsg (bsc#1218610).
</description>
<summary>Security update for the Linux Kernel (Live Patch 20 for SLE 15 SP4)</summary>
</patchinfo>
openSUSE Build Service is sponsored by