File _patchinfo of Package patchinfo.39093
<patchinfo incident="39093">
<issue id="1232900" tracker="bnc">VUL-0: CVE-2024-49855: kernel live patch: nbd: fix race between timeout and normal completion</issue>
<issue id="1238324" tracker="bnc">VUL-0: CVE-2022-49080: kernel live patch: mm/mempolicy: fix mpol_new leak in shared_policy_replace</issue>
<issue id="1239077" tracker="bnc">VUL-0: CVE-2024-57996: kernel live patch: net_sched: sch_sfq: don't allow 1 packet limit</issue>
<issue id="1239096" tracker="bnc">VUL-0: CVE-2024-58013: kernel live patch: Bluetooth: MGMT: Fix slab-use-after-free Read in mgmt_remove_adv_monitor_sync</issue>
<issue id="2022-49080" tracker="cve" />
<issue id="2024-49855" tracker="cve" />
<issue id="2024-57996" tracker="cve" />
<issue id="2024-58013" tracker="cve" />
<category>security</category>
<rating>important</rating>
<packager>nstange</packager>
<description>This update for the Linux Kernel 5.14.21-150500_55_73 fixes several issues.
The following security issues were fixed:
- CVE-2022-49080: mm/mempolicy: fix mpol_new leak in shared_policy_replace (bsc#1238324).
- CVE-2024-49855: nbd: fix race between timeout and normal completion (bsc#1232900).
- CVE-2024-58013: Bluetooth: MGMT: Fix slab-use-after-free Read in mgmt_remove_adv_monitor_sync (bsc#1239096).
- CVE-2024-57996: net_sched: sch_sfq: do not allow 1 packet limit (bsc#1239077).
</description>
<summary>Security update for the Linux Kernel (Live Patch 17 for SLE 15 SP5)</summary>
</patchinfo>