File _patchinfo of Package patchinfo.29213
<patchinfo incident="29213"> <issue id="1207188" tracker="bnc">VUL-0: CVE-2023-23454: kernel live patch: type-confusion in the CBQ network scheduler</issue> <issue id="1210417" tracker="bnc">VUL-0: CVE-2023-1872: kernel live patch: race condition in io_uring when unregistering fixed files</issue> <issue id="1210500" tracker="bnc">VUL-0: CVE-2023-1989: kernel live patch: Use after free bug in btsdio_remove due to race condition</issue> <issue id="1210662" tracker="bnc">VUL-0: CVE-2023-2162: kernel live patch: UAF during login when accessing the shost ipaddress</issue> <issue id="2023-1872" tracker="cve" /> <issue id="2023-1989" tracker="cve" /> <issue id="2023-2162" tracker="cve" /> <issue id="2023-23454" tracker="cve" /> <category>security</category> <rating>important</rating> <packager>nstange</packager> <description>This update for the Linux Kernel 5.3.18-150200_24_148 fixes several issues. The following security issues were fixed: - CVE-2023-1989: Fixed a use after free in btsdio_remove (bsc#1210500). - CVE-2023-1872: Fixed a use after free vulnerability in the io_uring subsystem, which could lead to local privilege escalation (bsc#1210417). - CVE-2023-2162: Fixed an use-after-free flaw in iscsi_sw_tcp_session_create (bsc#1210662). - CVE-2023-23454: Fixed a type-confusion in the CBQ network scheduler (bsc#1207188). </description> <summary>Security update for the Linux Kernel (Live Patch 35 for SLE 15 SP2)</summary> </patchinfo>