File _patchinfo of Package patchinfo.30516

<patchinfo incident="30516">
  <issue id="1211395" tracker="bnc">VUL-0: CVE-2023-2156: kernel live patch: Linux Kernel IPv6 RPL Protocol Reachable Assertion Denial-of-Service Vulnerability</issue>
  <issue id="1212849" tracker="bnc">VUL-0: CVE-2023-3090: kernel live patch: heap out-of-bounds vulnerability in the ipvlan network driver could lead to local privilege escalation</issue>
  <issue id="1213063" tracker="bnc">VUL-0: CVE-2023-35001: kernel live patch: nf_tables nft_byteorder_eval OOB read/write</issue>
  <issue id="2023-2156" tracker="cve" />
  <issue id="2023-3090" tracker="cve" />
  <issue id="2023-35001" tracker="cve" />
  <category>security</category>
  <rating>important</rating>
  <packager>nstange</packager>
  <description>This update for the Linux Kernel 5.14.21-150500_13_5 fixes several issues.

The following security issues were fixed:

- CVE-2023-2156: Fixed a flaw in the networking subsystem within the handling of the RPL protocol (bsc#1211395).
- CVE-2023-35001: Fixed an out-of-bounds memory access flaw in nft_byteorder that could allow a local attacker to escalate their privilege (bsc#1213063).
- CVE-2023-3090: Fixed a heap out-of-bounds write in the ipvlan network driver (bsc#1212849).
</description>
<summary>Security update for the Linux Kernel RT (Live Patch 1 for SLE 15 SP5)</summary>
</patchinfo>
openSUSE Build Service is sponsored by