Upstream information

CVE-2021-22543 at MITRE

Description

An issue was discovered in Linux: KVM through Improper handling of VM_IO|VM_PFNMAP vmas in KVM can bypass RO checks and can lead to pages being freed while still accessible by the VMM and guest. This allows users with the ability to start and control a VM to read/write random pages of memory and can result in local privilege escalation.

SUSE information

Overall state of this security issue: Analysis

This issue is currently rated as having important severity.

CVSS v3 Scores
  SUSE
Base Score 8.4
Vector CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Access Vector Local
Access Complexity Low
Privileges Required None
User Interaction None
Scope Unchanged
Confidentiality Impact High
Integrity Impact High
Availability Impact High
CVSSv3 Version 3.1
SUSE Bugzilla entries: 1186482 [IN_PROGRESS], 1186483 [IN_PROGRESS]

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
Image SLES15-SP2-CHOST-BYOS-Aliyun
Image SLES15-SP2-CHOST-BYOS-Azure
Image SLES15-SP2-CHOST-BYOS-EC2
Image SLES15-SP2-CHOST-BYOS-GCE
  • kernel-default >= 5.3.18-24.78.1
Image SLES15-SP3-CHOST-BYOS-Aliyun
Image SLES15-SP3-CHOST-BYOS-Azure
Image SLES15-SP3-CHOST-BYOS-EC2
Image SLES15-SP3-CHOST-BYOS-GCE
  • kernel-default >= 5.3.18-59.19.1
SUSE Linux Enterprise High Availability 12 SP5
  • cluster-md-kmp-default >= 4.12.14-122.83.1
  • dlm-kmp-default >= 4.12.14-122.83.1
  • gfs2-kmp-default >= 4.12.14-122.83.1
  • ocfs2-kmp-default >= 4.12.14-122.83.1
Patchnames:
SUSE-SLE-HA-12-SP5-2021-2647
SUSE Linux Enterprise High Availability 15 SP2
  • cluster-md-kmp-default >= 5.3.18-24.78.1
  • dlm-kmp-default >= 5.3.18-24.78.1
  • gfs2-kmp-default >= 5.3.18-24.78.1
  • ocfs2-kmp-default >= 5.3.18-24.78.1
Patchnames:
SUSE-SLE-Product-HA-15-SP2-2021-2756
SUSE Linux Enterprise High Availability 15 SP3
  • cluster-md-kmp-default >= 5.3.18-59.19.1
  • dlm-kmp-default >= 5.3.18-59.19.1
  • gfs2-kmp-default >= 5.3.18-59.19.1
  • ocfs2-kmp-default >= 5.3.18-59.19.1
Patchnames:
SUSE-SLE-Product-HA-15-SP3-2021-2687
SUSE Linux Enterprise Live Patching 12 SP4
  • kgraft-patch-4_12_14-95_60-default >= 13-2.2
  • kgraft-patch-4_12_14-95_65-default >= 10-2.2
  • kgraft-patch-4_12_14-95_68-default >= 9-2.2
  • kgraft-patch-4_12_14-95_71-default >= 8-2.2
  • kgraft-patch-4_12_14-95_74-default >= 5-2.1
  • kgraft-patch-4_12_14-95_77-default >= 4-2.1
  • kgraft-patch-4_12_14-95_80-default >= 2-2.1
Patchnames:
SUSE-SLE-Live-Patching-12-SP4-2021-2749
SUSE-SLE-Live-Patching-12-SP4-2021-2750
SUSE-SLE-Live-Patching-12-SP4-2021-2751
SUSE-SLE-Live-Patching-12-SP4-2021-2752
SUSE-SLE-Live-Patching-12-SP4-2021-2753
SUSE-SLE-Live-Patching-12-SP4-2021-2754
SUSE-SLE-Live-Patching-12-SP4-2021-2755
SUSE Linux Enterprise Live Patching 12 SP5
  • kernel-default-kgraft >= 4.12.14-122.83.1
  • kernel-default-kgraft-devel >= 4.12.14-122.83.1
  • kgraft-patch-4_12_14-122_32-default >= 16-2.2
  • kgraft-patch-4_12_14-122_37-default >= 15-2.2
  • kgraft-patch-4_12_14-122_41-default >= 14-2.2
  • kgraft-patch-4_12_14-122_46-default >= 12-2.2
  • kgraft-patch-4_12_14-122_51-default >= 12-2.2
  • kgraft-patch-4_12_14-122_54-default >= 10-2.2
  • kgraft-patch-4_12_14-122_57-default >= 10-2.2
  • kgraft-patch-4_12_14-122_60-default >= 9-2.2
  • kgraft-patch-4_12_14-122_63-default >= 8-2.2
  • kgraft-patch-4_12_14-122_66-default >= 6-2.1
  • kgraft-patch-4_12_14-122_71-default >= 5-2.1
  • kgraft-patch-4_12_14-122_74-default >= 3-2.1
  • kgraft-patch-4_12_14-122_77-default >= 3-2.1
  • kgraft-patch-4_12_14-122_80-default >= 2-2.1
  • kgraft-patch-4_12_14-122_83-default >= 1-8.3.1
Patchnames:
SUSE-SLE-Live-Patching-12-SP5-2021-2647
SUSE-SLE-Live-Patching-12-SP5-2021-2735
SUSE-SLE-Live-Patching-12-SP5-2021-2736
SUSE-SLE-Live-Patching-12-SP5-2021-2737
SUSE-SLE-Live-Patching-12-SP5-2021-2738
SUSE-SLE-Live-Patching-12-SP5-2021-2739
SUSE-SLE-Live-Patching-12-SP5-2021-2740
SUSE-SLE-Live-Patching-12-SP5-2021-2741
SUSE-SLE-Live-Patching-12-SP5-2021-2742
SUSE-SLE-Live-Patching-12-SP5-2021-2743
SUSE-SLE-Live-Patching-12-SP5-2021-2744
SUSE-SLE-Live-Patching-12-SP5-2021-2745
SUSE-SLE-Live-Patching-12-SP5-2021-2746
SUSE-SLE-Live-Patching-12-SP5-2021-2747
SUSE-SLE-Live-Patching-12-SP5-2021-2748
SUSE Linux Enterprise Module for Basesystem 15 SP2
  • kernel-default >= 5.3.18-24.78.1
  • kernel-default-base >= 5.3.18-24.78.1.9.36.1
  • kernel-default-devel >= 5.3.18-24.78.1
  • kernel-devel >= 5.3.18-24.78.1
  • kernel-macros >= 5.3.18-24.78.1
  • kernel-preempt >= 5.3.18-24.78.1
Patchnames:
SUSE-SLE-Module-Basesystem-15-SP2-2021-2756
SUSE Linux Enterprise Module for Basesystem 15 SP3
  • kernel-64kb >= 5.3.18-59.19.1
  • kernel-64kb-devel >= 5.3.18-59.19.1
  • kernel-default >= 5.3.18-59.19.1
  • kernel-default-base >= 5.3.18-59.19.1.18.10.1
  • kernel-default-devel >= 5.3.18-59.19.1
  • kernel-devel >= 5.3.18-59.19.1
  • kernel-macros >= 5.3.18-59.19.1
  • kernel-preempt >= 5.3.18-59.19.1
  • kernel-zfcpdump >= 5.3.18-59.19.1
Patchnames:
SUSE-SLE-Module-Basesystem-15-SP3-2021-2687
SUSE Linux Enterprise Module for Development Tools 15 SP2
  • kernel-docs >= 5.3.18-24.78.1
  • kernel-obs-build >= 5.3.18-24.78.1
  • kernel-preempt-devel >= 5.3.18-24.78.1
  • kernel-source >= 5.3.18-24.78.1
  • kernel-syms >= 5.3.18-24.78.1
Patchnames:
SUSE-SLE-Module-Development-Tools-15-SP2-2021-2756
SUSE Linux Enterprise Module for Development Tools 15 SP3
  • kernel-docs >= 5.3.18-59.19.1
  • kernel-obs-build >= 5.3.18-59.19.1
  • kernel-preempt-devel >= 5.3.18-59.19.1
  • kernel-source >= 5.3.18-59.19.1
  • kernel-syms >= 5.3.18-59.19.1
Patchnames:
SUSE-SLE-Module-Development-Tools-15-SP3-2021-2687
SUSE Linux Enterprise Module for Legacy 15 SP2
  • reiserfs-kmp-default >= 5.3.18-24.78.1
Patchnames:
SUSE-SLE-Module-Legacy-15-SP2-2021-2756
SUSE Linux Enterprise Module for Legacy 15 SP3
  • reiserfs-kmp-default >= 5.3.18-59.19.1
Patchnames:
SUSE-SLE-Module-Legacy-15-SP3-2021-2687
SUSE Linux Enterprise Module for Live Patching 15 SP1
  • kernel-livepatch-4_12_14-197_51-default >= 14-2.2
  • kernel-livepatch-4_12_14-197_56-default >= 13-2.2
  • kernel-livepatch-4_12_14-197_61-default >= 12-2.2
  • kernel-livepatch-4_12_14-197_64-default >= 11-2.2
  • kernel-livepatch-4_12_14-197_67-default >= 11-2.2
  • kernel-livepatch-4_12_14-197_72-default >= 10-2.2
  • kernel-livepatch-4_12_14-197_75-default >= 10-2.2
  • kernel-livepatch-4_12_14-197_78-default >= 10-2.2
  • kernel-livepatch-4_12_14-197_83-default >= 9-2.2
  • kernel-livepatch-4_12_14-197_86-default >= 8-2.2
  • kernel-livepatch-4_12_14-197_89-default >= 5-2.1
  • kernel-livepatch-4_12_14-197_92-default >= 4-2.1
  • kernel-livepatch-4_12_14-197_99-default >= 2-2.1
Patchnames:
SUSE-SLE-Module-Live-Patching-15-SP1-2021-2706
SUSE-SLE-Module-Live-Patching-15-SP1-2021-2709
SUSE-SLE-Module-Live-Patching-15-SP1-2021-2711
SUSE-SLE-Module-Live-Patching-15-SP1-2021-2713
SUSE-SLE-Module-Live-Patching-15-SP1-2021-2714
SUSE-SLE-Module-Live-Patching-15-SP1-2021-2717
SUSE-SLE-Module-Live-Patching-15-SP1-2021-2719
SUSE-SLE-Module-Live-Patching-15-SP1-2021-2721
SUSE-SLE-Module-Live-Patching-15-SP1-2021-2724
SUSE-SLE-Module-Live-Patching-15-SP1-2021-2725
SUSE-SLE-Module-Live-Patching-15-SP1-2021-2729
SUSE-SLE-Module-Live-Patching-15-SP1-2021-2730
SUSE-SLE-Module-Live-Patching-15-SP1-2021-2733
SUSE Linux Enterprise Module for Live Patching 15 SP2
  • kernel-default-livepatch >= 5.3.18-24.78.1
  • kernel-default-livepatch-devel >= 5.3.18-24.78.1
  • kernel-livepatch-5_3_18-24_12-default >= 13-2.2
  • kernel-livepatch-5_3_18-24_15-default >= 13-2.2
  • kernel-livepatch-5_3_18-24_24-default >= 13-2.2
  • kernel-livepatch-5_3_18-24_29-default >= 11-2.2
  • kernel-livepatch-5_3_18-24_34-default >= 11-2.2
  • kernel-livepatch-5_3_18-24_37-default >= 11-2.2
  • kernel-livepatch-5_3_18-24_43-default >= 10-2.2
  • kernel-livepatch-5_3_18-24_46-default >= 10-2.2
  • kernel-livepatch-5_3_18-24_49-default >= 9-2.2
  • kernel-livepatch-5_3_18-24_52-default >= 8-2.2
  • kernel-livepatch-5_3_18-24_53_4-default >= 3-2.1
  • kernel-livepatch-5_3_18-24_61-default >= 5-2.1
  • kernel-livepatch-5_3_18-24_64-default >= 5-2.1
  • kernel-livepatch-5_3_18-24_67-default >= 3-2.1
  • kernel-livepatch-5_3_18-24_70-default >= 3-2.1
  • kernel-livepatch-5_3_18-24_75-default >= 2-2.1
  • kernel-livepatch-5_3_18-24_78-default >= 1-5.3.1
Patchnames:
SUSE-SLE-Module-Live-Patching-15-SP2-2021-2695
SUSE-SLE-Module-Live-Patching-15-SP2-2021-2696
SUSE-SLE-Module-Live-Patching-15-SP2-2021-2697
SUSE-SLE-Module-Live-Patching-15-SP2-2021-2701
SUSE-SLE-Module-Live-Patching-15-SP2-2021-2702
SUSE-SLE-Module-Live-Patching-15-SP2-2021-2705
SUSE-SLE-Module-Live-Patching-15-SP2-2021-2707
SUSE-SLE-Module-Live-Patching-15-SP2-2021-2708
SUSE-SLE-Module-Live-Patching-15-SP2-2021-2710
SUSE-SLE-Module-Live-Patching-15-SP2-2021-2712
SUSE-SLE-Module-Live-Patching-15-SP2-2021-2715
SUSE-SLE-Module-Live-Patching-15-SP2-2021-2716
SUSE-SLE-Module-Live-Patching-15-SP2-2021-2718
SUSE-SLE-Module-Live-Patching-15-SP2-2021-2720
SUSE-SLE-Module-Live-Patching-15-SP2-2021-2722
SUSE-SLE-Module-Live-Patching-15-SP2-2021-2723
SUSE-SLE-Module-Live-Patching-15-SP2-2021-2756
SUSE Linux Enterprise Module for Live Patching 15 SP3
  • kernel-default-livepatch >= 5.3.18-59.19.1
  • kernel-default-livepatch-devel >= 5.3.18-59.19.1
  • kernel-livepatch-5_3_18-57-default >= 5-3.1
  • kernel-livepatch-5_3_18-59_10-default >= 3-2.1
  • kernel-livepatch-5_3_18-59_13-default >= 3-2.1
  • kernel-livepatch-5_3_18-59_16-default >= 2-2.1
  • kernel-livepatch-5_3_18-59_19-default >= 1-7.3.1
  • kernel-livepatch-5_3_18-59_5-default >= 3-2.1
Patchnames:
SUSE-SLE-Module-Live-Patching-15-SP3-2021-2687
SUSE-SLE-Module-Live-Patching-15-SP3-2021-2698
SUSE-SLE-Module-Live-Patching-15-SP3-2021-2699
SUSE-SLE-Module-Live-Patching-15-SP3-2021-2700
SUSE-SLE-Module-Live-Patching-15-SP3-2021-2703
SUSE-SLE-Module-Live-Patching-15-SP3-2021-2704
SUSE Linux Enterprise Module for Live Patching 15
  • kernel-livepatch-4_12_14-150_58-default >= 13-2.2
  • kernel-livepatch-4_12_14-150_63-default >= 11-2.2
  • kernel-livepatch-4_12_14-150_66-default >= 9-2.2
  • kernel-livepatch-4_12_14-150_69-default >= 8-2.2
  • kernel-livepatch-4_12_14-150_72-default >= 5-2.1
  • kernel-livepatch-4_12_14-150_75-default >= 2-2.1
Patchnames:
SUSE-SLE-Module-Live-Patching-15-2021-2726
SUSE-SLE-Module-Live-Patching-15-2021-2727
SUSE-SLE-Module-Live-Patching-15-2021-2728
SUSE-SLE-Module-Live-Patching-15-2021-2731
SUSE-SLE-Module-Live-Patching-15-2021-2732
SUSE-SLE-Module-Live-Patching-15-2021-2734
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2
  • cluster-md-kmp-azure >= 5.3.18-18.61.1
  • cluster-md-kmp-preempt >= 5.3.18-24.78.1
  • dlm-kmp-azure >= 5.3.18-18.61.1
  • dlm-kmp-preempt >= 5.3.18-24.78.1
  • gfs2-kmp-azure >= 5.3.18-18.61.1
  • gfs2-kmp-preempt >= 5.3.18-24.78.1
  • kernel-azure-extra >= 5.3.18-18.61.1
  • kernel-azure-livepatch-devel >= 5.3.18-18.61.1
  • kernel-debug >= 5.3.18-24.78.1
  • kernel-debug-devel >= 5.3.18-24.78.1
  • kernel-debug-livepatch-devel >= 5.3.18-24.78.1
  • kernel-default-base-rebuild >= 5.3.18-24.78.1.9.36.1
  • kernel-default-livepatch >= 5.3.18-24.78.1
  • kernel-docs-html >= 5.3.18-24.78.1
  • kernel-kvmsmall >= 5.3.18-24.78.1
  • kernel-kvmsmall-devel >= 5.3.18-24.78.1
  • kernel-kvmsmall-livepatch-devel >= 5.3.18-24.78.1
  • kernel-obs-qa >= 5.3.18-24.78.1
  • kernel-preempt-extra >= 5.3.18-24.78.1
  • kernel-preempt-livepatch-devel >= 5.3.18-24.78.1
  • kernel-source-vanilla >= 5.3.18-24.78.1
  • kselftests-kmp-azure >= 5.3.18-18.61.1
  • kselftests-kmp-default >= 5.3.18-24.78.1
  • kselftests-kmp-preempt >= 5.3.18-24.78.1
  • ocfs2-kmp-azure >= 5.3.18-18.61.1
  • ocfs2-kmp-preempt >= 5.3.18-24.78.1
  • reiserfs-kmp-azure >= 5.3.18-18.61.1
  • reiserfs-kmp-preempt >= 5.3.18-24.78.1
Patchnames:
SUSE-SLE-Module-Development-Tools-OBS-15-SP2-2021-2646
SUSE-SLE-Module-Development-Tools-OBS-15-SP2-2021-2756
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP3
  • cluster-md-kmp-64kb >= 5.3.18-59.19.1
  • cluster-md-kmp-azure >= 5.3.18-38.17.1
  • cluster-md-kmp-preempt >= 5.3.18-59.19.1
  • dlm-kmp-64kb >= 5.3.18-59.19.1
  • dlm-kmp-azure >= 5.3.18-38.17.1
  • dlm-kmp-preempt >= 5.3.18-59.19.1
  • dtb-al >= 5.3.18-59.19.1
  • dtb-allwinner >= 5.3.18-59.19.1
  • dtb-altera >= 5.3.18-59.19.1
  • dtb-amd >= 5.3.18-59.19.1
  • dtb-amlogic >= 5.3.18-59.19.1
  • dtb-apm >= 5.3.18-59.19.1
  • dtb-arm >= 5.3.18-59.19.1
  • dtb-broadcom >= 5.3.18-59.19.1
  • dtb-cavium >= 5.3.18-59.19.1
  • dtb-exynos >= 5.3.18-59.19.1
  • dtb-freescale >= 5.3.18-59.19.1
  • dtb-hisilicon >= 5.3.18-59.19.1
  • dtb-lg >= 5.3.18-59.19.1
  • dtb-marvell >= 5.3.18-59.19.1
  • dtb-mediatek >= 5.3.18-59.19.1
  • dtb-nvidia >= 5.3.18-59.19.1
  • dtb-qcom >= 5.3.18-59.19.1
  • dtb-renesas >= 5.3.18-59.19.1
  • dtb-rockchip >= 5.3.18-59.19.1
  • dtb-socionext >= 5.3.18-59.19.1
  • dtb-sprd >= 5.3.18-59.19.1
  • dtb-xilinx >= 5.3.18-59.19.1
  • dtb-zte >= 5.3.18-59.19.1
  • gfs2-kmp-64kb >= 5.3.18-59.19.1
  • gfs2-kmp-azure >= 5.3.18-38.17.1
  • gfs2-kmp-preempt >= 5.3.18-59.19.1
  • kernel-64kb-extra >= 5.3.18-59.19.1
  • kernel-64kb-livepatch-devel >= 5.3.18-59.19.1
  • kernel-64kb-optional >= 5.3.18-59.19.1
  • kernel-azure-extra >= 5.3.18-38.17.1
  • kernel-azure-livepatch-devel >= 5.3.18-38.17.1
  • kernel-azure-optional >= 5.3.18-38.17.1
  • kernel-debug >= 5.3.18-59.19.1
  • kernel-debug-devel >= 5.3.18-59.19.1
  • kernel-debug-livepatch-devel >= 5.3.18-59.19.1
  • kernel-default-base-rebuild >= 5.3.18-59.19.1.18.10.1
  • kernel-default-livepatch >= 5.3.18-59.19.1
  • kernel-default-optional >= 5.3.18-59.19.1
  • kernel-docs-html >= 5.3.18-59.19.1
  • kernel-kvmsmall >= 5.3.18-59.19.1
  • kernel-kvmsmall-devel >= 5.3.18-59.19.1
  • kernel-kvmsmall-livepatch-devel >= 5.3.18-59.19.1
  • kernel-obs-qa >= 5.3.18-59.19.1
  • kernel-preempt-livepatch-devel >= 5.3.18-59.19.1
  • kernel-preempt-optional >= 5.3.18-59.19.1
  • kernel-source-vanilla >= 5.3.18-59.19.1
  • kselftests-kmp-64kb >= 5.3.18-59.19.1
  • kselftests-kmp-azure >= 5.3.18-38.17.1
  • kselftests-kmp-default >= 5.3.18-59.19.1
  • kselftests-kmp-preempt >= 5.3.18-59.19.1
  • ocfs2-kmp-64kb >= 5.3.18-59.19.1
  • ocfs2-kmp-azure >= 5.3.18-38.17.1
  • ocfs2-kmp-preempt >= 5.3.18-59.19.1
  • reiserfs-kmp-64kb >= 5.3.18-59.19.1
  • reiserfs-kmp-azure >= 5.3.18-38.17.1
  • reiserfs-kmp-preempt >= 5.3.18-59.19.1
Patchnames:
SUSE-SLE-Module-Development-Tools-OBS-15-SP3-2021-2645
SUSE-SLE-Module-Development-Tools-OBS-15-SP3-2021-2687
SUSE Linux Enterprise Module for Public Cloud 15 SP2
  • kernel-azure >= 5.3.18-18.61.1
  • kernel-azure-devel >= 5.3.18-18.61.1
  • kernel-devel-azure >= 5.3.18-18.61.1
  • kernel-source-azure >= 5.3.18-18.61.1
  • kernel-syms-azure >= 5.3.18-18.61.1
Patchnames:
SUSE-SLE-Module-Public-Cloud-15-SP2-2021-2646
SUSE Linux Enterprise Module for Public Cloud 15 SP3
  • kernel-azure >= 5.3.18-38.17.1
  • kernel-azure-devel >= 5.3.18-38.17.1
  • kernel-devel-azure >= 5.3.18-38.17.1
  • kernel-source-azure >= 5.3.18-38.17.1
  • kernel-syms-azure >= 5.3.18-38.17.1
Patchnames:
SUSE-SLE-Module-Public-Cloud-15-SP3-2021-2645
SUSE Linux Enterprise Module for Realtime packages 15 SP2
  • cluster-md-kmp-rt >= 5.3.18-48.1
  • dlm-kmp-rt >= 5.3.18-48.1
  • gfs2-kmp-rt >= 5.3.18-48.1
  • kernel-devel-rt >= 5.3.18-48.1
  • kernel-rt >= 5.3.18-48.1
  • kernel-rt-devel >= 5.3.18-48.1
  • kernel-rt_debug >= 5.3.18-48.1
  • kernel-rt_debug-devel >= 5.3.18-48.1
  • kernel-source-rt >= 5.3.18-48.1
  • kernel-syms-rt >= 5.3.18-48.1
  • ocfs2-kmp-rt >= 5.3.18-48.1
Patchnames:
SUSE-SLE-Module-RT-15-SP2-2021-2678
SUSE Linux Enterprise Real Time Extension 12 SP5
  • cluster-md-kmp-rt >= 4.12.14-10.54.1
  • dlm-kmp-rt >= 4.12.14-10.54.1
  • gfs2-kmp-rt >= 4.12.14-10.54.1
  • kernel-devel-rt >= 4.12.14-10.54.1
  • kernel-rt >= 4.12.14-10.54.1
  • kernel-rt-base >= 4.12.14-10.54.1
  • kernel-rt-devel >= 4.12.14-10.54.1
  • kernel-rt_debug >= 4.12.14-10.54.1
  • kernel-rt_debug-devel >= 4.12.14-10.54.1
  • kernel-source-rt >= 4.12.14-10.54.1
  • kernel-syms-rt >= 4.12.14-10.54.1
  • ocfs2-kmp-rt >= 4.12.14-10.54.1
Patchnames:
SUSE-SLE-RT-12-SP5-2021-2643
SUSE Linux Enterprise Server 12 SP5
SUSE Linux Enterprise Server for SAP Applications 12 SP5
  • kernel-azure >= 4.12.14-16.68.1
  • kernel-azure-base >= 4.12.14-16.68.1
  • kernel-azure-devel >= 4.12.14-16.68.1
  • kernel-default >= 4.12.14-122.83.1
  • kernel-default-base >= 4.12.14-122.83.1
  • kernel-default-devel >= 4.12.14-122.83.1
  • kernel-default-man >= 4.12.14-122.83.1
  • kernel-devel >= 4.12.14-122.83.1
  • kernel-devel-azure >= 4.12.14-16.68.1
  • kernel-macros >= 4.12.14-122.83.1
  • kernel-source >= 4.12.14-122.83.1
  • kernel-source-azure >= 4.12.14-16.68.1
  • kernel-syms >= 4.12.14-122.83.1
  • kernel-syms-azure >= 4.12.14-16.68.1
Patchnames:
SUSE-SLE-SERVER-12-SP5-2021-2644
SUSE-SLE-SERVER-12-SP5-2021-2647
SUSE Linux Enterprise Software Development Kit 12 SP5
  • kernel-docs >= 4.12.14-122.83.1
  • kernel-obs-build >= 4.12.14-122.83.1
Patchnames:
SUSE-SLE-SDK-12-SP5-2021-2647
SUSE Linux Enterprise Workstation Extension 12 SP5
  • kernel-default-extra >= 4.12.14-122.83.1
Patchnames:
SUSE-SLE-WE-12-SP5-2021-2647
SUSE Linux Enterprise Workstation Extension 15 SP2
  • kernel-default-extra >= 5.3.18-24.78.1
  • kernel-preempt-extra >= 5.3.18-24.78.1
Patchnames:
SUSE-SLE-Product-WE-15-SP2-2021-2756
SUSE Linux Enterprise Workstation Extension 15 SP3
  • kernel-default-extra >= 5.3.18-59.19.1
  • kernel-preempt-extra >= 5.3.18-59.19.1
Patchnames:
SUSE-SLE-Product-WE-15-SP3-2021-2687
SUSE MicroOS 5.0
  • kernel-default >= 5.3.18-24.78.1
  • kernel-default-base >= 5.3.18-24.78.1.9.36.1
  • kernel-rt >= 5.3.18-48.1
Patchnames:
SUSE-SUSE-MicroOS-5.0-2021-2678
SUSE-SUSE-MicroOS-5.0-2021-2756
openSUSE Leap 15.2
  • kernel-debug >= 5.3.18-lp152.87.1
  • kernel-debug-debuginfo >= 5.3.18-lp152.87.1
  • kernel-debug-debugsource >= 5.3.18-lp152.87.1
  • kernel-debug-devel >= 5.3.18-lp152.87.1
  • kernel-debug-devel-debuginfo >= 5.3.18-lp152.87.1
  • kernel-default >= 5.3.18-lp152.87.1
  • kernel-default-base >= 5.3.18-lp152.87.1.lp152.8.40.1
  • kernel-default-base-rebuild >= 5.3.18-lp152.87.1.lp152.8.40.1
  • kernel-default-debuginfo >= 5.3.18-lp152.87.1
  • kernel-default-debugsource >= 5.3.18-lp152.87.1
  • kernel-default-devel >= 5.3.18-lp152.87.1
  • kernel-default-devel-debuginfo >= 5.3.18-lp152.87.1
  • kernel-devel >= 5.3.18-lp152.87.1
  • kernel-docs >= 5.3.18-lp152.87.1
  • kernel-docs-html >= 5.3.18-lp152.87.1
  • kernel-kvmsmall >= 5.3.18-lp152.87.1
  • kernel-kvmsmall-debuginfo >= 5.3.18-lp152.87.1
  • kernel-kvmsmall-debugsource >= 5.3.18-lp152.87.1
  • kernel-kvmsmall-devel >= 5.3.18-lp152.87.1
  • kernel-kvmsmall-devel-debuginfo >= 5.3.18-lp152.87.1
  • kernel-macros >= 5.3.18-lp152.87.1
  • kernel-obs-build >= 5.3.18-lp152.87.1
  • kernel-obs-build-debugsource >= 5.3.18-lp152.87.1
  • kernel-obs-qa >= 5.3.18-lp152.87.1
  • kernel-preempt >= 5.3.18-lp152.87.1
  • kernel-preempt-debuginfo >= 5.3.18-lp152.87.1
  • kernel-preempt-debugsource >= 5.3.18-lp152.87.1
  • kernel-preempt-devel >= 5.3.18-lp152.87.1
  • kernel-preempt-devel-debuginfo >= 5.3.18-lp152.87.1
  • kernel-source >= 5.3.18-lp152.87.1
  • kernel-source-vanilla >= 5.3.18-lp152.87.1
  • kernel-syms >= 5.3.18-lp152.87.1
Patchnames:
openSUSE-2021-1142
openSUSE Leap 15.3
  • cluster-md-kmp-64kb >= 5.3.18-59.19.1
  • cluster-md-kmp-azure >= 5.3.18-38.17.1
  • cluster-md-kmp-default >= 5.3.18-59.19.1
  • cluster-md-kmp-preempt >= 5.3.18-59.19.1
  • dlm-kmp-64kb >= 5.3.18-59.19.1
  • dlm-kmp-azure >= 5.3.18-38.17.1
  • dlm-kmp-default >= 5.3.18-59.19.1
  • dlm-kmp-preempt >= 5.3.18-59.19.1
  • dtb-al >= 5.3.18-59.19.1
  • dtb-allwinner >= 5.3.18-59.19.1
  • dtb-altera >= 5.3.18-59.19.1
  • dtb-amd >= 5.3.18-59.19.1
  • dtb-amlogic >= 5.3.18-59.19.1
  • dtb-apm >= 5.3.18-59.19.1
  • dtb-arm >= 5.3.18-59.19.1
  • dtb-broadcom >= 5.3.18-59.19.1
  • dtb-cavium >= 5.3.18-59.19.1
  • dtb-exynos >= 5.3.18-59.19.1
  • dtb-freescale >= 5.3.18-59.19.1
  • dtb-hisilicon >= 5.3.18-59.19.1
  • dtb-lg >= 5.3.18-59.19.1
  • dtb-marvell >= 5.3.18-59.19.1
  • dtb-mediatek >= 5.3.18-59.19.1
  • dtb-nvidia >= 5.3.18-59.19.1
  • dtb-qcom >= 5.3.18-59.19.1
  • dtb-renesas >= 5.3.18-59.19.1
  • dtb-rockchip >= 5.3.18-59.19.1
  • dtb-socionext >= 5.3.18-59.19.1
  • dtb-sprd >= 5.3.18-59.19.1
  • dtb-xilinx >= 5.3.18-59.19.1
  • dtb-zte >= 5.3.18-59.19.1
  • gfs2-kmp-64kb >= 5.3.18-59.19.1
  • gfs2-kmp-azure >= 5.3.18-38.17.1
  • gfs2-kmp-default >= 5.3.18-59.19.1
  • gfs2-kmp-preempt >= 5.3.18-59.19.1
  • kernel-64kb >= 5.3.18-59.19.1
  • kernel-64kb-devel >= 5.3.18-59.19.1
  • kernel-64kb-extra >= 5.3.18-59.19.1
  • kernel-64kb-livepatch-devel >= 5.3.18-59.19.1
  • kernel-64kb-optional >= 5.3.18-59.19.1
  • kernel-azure >= 5.3.18-38.17.1
  • kernel-azure-devel >= 5.3.18-38.17.1
  • kernel-azure-extra >= 5.3.18-38.17.1
  • kernel-azure-livepatch-devel >= 5.3.18-38.17.1
  • kernel-azure-optional >= 5.3.18-38.17.1
  • kernel-debug >= 5.3.18-59.19.1
  • kernel-debug-devel >= 5.3.18-59.19.1
  • kernel-debug-livepatch-devel >= 5.3.18-59.19.1
  • kernel-default >= 5.3.18-59.19.1
  • kernel-default-base >= 5.3.18-59.19.1.18.10.1
  • kernel-default-base-rebuild >= 5.3.18-59.19.1.18.10.1
  • kernel-default-devel >= 5.3.18-59.19.1
  • kernel-default-extra >= 5.3.18-59.19.1
  • kernel-default-livepatch >= 5.3.18-59.19.1
  • kernel-default-livepatch-devel >= 5.3.18-59.19.1
  • kernel-default-optional >= 5.3.18-59.19.1
  • kernel-devel >= 5.3.18-59.19.1
  • kernel-devel-azure >= 5.3.18-38.17.1
  • kernel-docs >= 5.3.18-59.19.1
  • kernel-docs-html >= 5.3.18-59.19.1
  • kernel-kvmsmall >= 5.3.18-59.19.1
  • kernel-kvmsmall-devel >= 5.3.18-59.19.1
  • kernel-kvmsmall-livepatch-devel >= 5.3.18-59.19.1
  • kernel-macros >= 5.3.18-59.19.1
  • kernel-obs-build >= 5.3.18-59.19.1
  • kernel-obs-qa >= 5.3.18-59.19.1
  • kernel-preempt >= 5.3.18-59.19.1
  • kernel-preempt-devel >= 5.3.18-59.19.1
  • kernel-preempt-extra >= 5.3.18-59.19.1
  • kernel-preempt-livepatch-devel >= 5.3.18-59.19.1
  • kernel-preempt-optional >= 5.3.18-59.19.1
  • kernel-source >= 5.3.18-59.19.1
  • kernel-source-azure >= 5.3.18-38.17.1
  • kernel-source-vanilla >= 5.3.18-59.19.1
  • kernel-syms >= 5.3.18-59.19.1
  • kernel-syms-azure >= 5.3.18-38.17.1
  • kernel-zfcpdump >= 5.3.18-59.19.1
  • kselftests-kmp-64kb >= 5.3.18-59.19.1
  • kselftests-kmp-azure >= 5.3.18-38.17.1
  • kselftests-kmp-default >= 5.3.18-59.19.1
  • kselftests-kmp-preempt >= 5.3.18-59.19.1
  • ocfs2-kmp-64kb >= 5.3.18-59.19.1
  • ocfs2-kmp-azure >= 5.3.18-38.17.1
  • ocfs2-kmp-default >= 5.3.18-59.19.1
  • ocfs2-kmp-preempt >= 5.3.18-59.19.1
  • reiserfs-kmp-64kb >= 5.3.18-59.19.1
  • reiserfs-kmp-azure >= 5.3.18-38.17.1
  • reiserfs-kmp-default >= 5.3.18-59.19.1
  • reiserfs-kmp-preempt >= 5.3.18-59.19.1
Patchnames:
openSUSE-SLE-15.3-2021-2645
openSUSE-SLE-15.3-2021-2687


First public cloud image revisions this CVE is fixed in:


Status of this issue by product and package

Please note that this evaluation state might be work in progress, incomplete or outdated. Also information for service packs in the LTSS phase is only included for issues meeting the LTSS criteria. If in doubt, feel free to contact us for clarification.

Product(s) Source package State
Carwos 1 kernel-source-rt Affected
HPE Helion OpenStack 8 kernel-default Not affected
HPE Helion OpenStack 8 kernel-source Not affected
HPE Helion OpenStack 8 kernel-source-azure Not affected
SUSE CaaS Platform 4.0 kernel-default Affected
SUSE CaaS Platform 4.0 kernel-source Affected
SUSE Enterprise Storage 6 kernel-default Affected
SUSE Enterprise Storage 6 kernel-source Affected
SUSE Linux Enterprise High Performance Computing 12 SP5 kernel-default Released
SUSE Linux Enterprise High Performance Computing 12 SP5 kernel-source Released
SUSE Linux Enterprise High Performance Computing 12 SP5 kernel-source-azure Released
SUSE Linux Enterprise High Performance Computing 15 LTSS kernel-default Affected
SUSE Linux Enterprise High Performance Computing 15 LTSS kernel-source Affected
SUSE Linux Enterprise High Performance Computing 15 SP1 LTSS kernel-default Affected
SUSE Linux Enterprise High Performance Computing 15 SP1 LTSS kernel-source Affected
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP1_Update_14 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP1_Update_15 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP1_Update_16 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP1_Update_17 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP1_Update_18 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP1_Update_19 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP1_Update_20 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP1_Update_21 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP1_Update_22 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP1_Update_23 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP1_Update_24 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP1_Update_25 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP1_Update_26 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP2_Update_10 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP2_Update_11 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP2_Update_12 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP2_Update_13 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP2_Update_14 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP2_Update_15 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP2_Update_16 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP2_Update_17 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP2_Update_2 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP2_Update_3 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP2_Update_4 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP2_Update_5 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP2_Update_6 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP2_Update_7 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP2_Update_8 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15-SP2_Update_9 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15_Update_20 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15_Update_21 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15_Update_22 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15_Update_23 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15_Update_24 In progress
SUSE Linux Enterprise Live Patching kernel-livepatch-SLE15_Update_25 In progress
SUSE Linux Enterprise Live Patching kgraft-patch-SLE12-SP4_Update_16 In progress
SUSE Linux Enterprise Live Patching kgraft-patch-SLE12-SP4_Update_17 In progress
SUSE Linux Enterprise Live Patching kgraft-patch-SLE12-SP4_Update_18 In progress
SUSE Linux Enterprise Live Patching kgraft-patch-SLE12-SP4_Update_19 In progress
SUSE Linux Enterprise Live Patching kgraft-patch-SLE12-SP4_Update_20 In progress
SUSE Linux Enterprise Live Patching kgraft-patch-SLE12-SP4_Update_21 In progress
SUSE Linux Enterprise Live Patching kgraft-patch-SLE12-SP4_Update_22 In progress
SUSE Linux Enterprise Live Patching kgraft-patch-SLE12-SP5_Update_10 In progress
SUSE Linux Enterprise Live Patching kgraft-patch-SLE12-SP5_Update_11 In progress
SUSE Linux Enterprise Live Patching kgraft-patch-SLE12-SP5_Update_12 In progress
SUSE Linux Enterprise Live Patching kgraft-patch-SLE12-SP5_Update_13 In progress
SUSE Linux Enterprise Live Patching kgraft-patch-SLE12-SP5_Update_14 In progress
SUSE Linux Enterprise Live Patching kgraft-patch-SLE12-SP5_Update_15 In progress
SUSE Linux Enterprise Live Patching kgraft-patch-SLE12-SP5_Update_16 In progress
SUSE Linux Enterprise Live Patching kgraft-patch-SLE12-SP5_Update_17 In progress
SUSE Linux Enterprise Live Patching kgraft-patch-SLE12-SP5_Update_18 In progress
SUSE Linux Enterprise Live Patching kgraft-patch-SLE12-SP5_Update_19 In progress
SUSE Linux Enterprise Live Patching kgraft-patch-SLE12-SP5_Update_20 In progress
SUSE Linux Enterprise Live Patching kgraft-patch-SLE12-SP5_Update_21 In progress
SUSE Linux Enterprise Live Patching kgraft-patch-SLE12-SP5_Update_8 In progress
SUSE Linux Enterprise Live Patching kgraft-patch-SLE12-SP5_Update_9 In progress
SUSE Linux Enterprise Module for Basesystem 15 SP2 kernel-default Released
SUSE Linux Enterprise Module for Basesystem 15 SP2 kernel-source Released
SUSE Linux Enterprise Module for Basesystem 15 SP3 kernel-default Released
SUSE Linux Enterprise Module for Basesystem 15 SP3 kernel-source Released
SUSE Linux Enterprise Module for Development Tools 15 SP2 kernel-default Released
SUSE Linux Enterprise Module for Development Tools 15 SP2 kernel-source Released
SUSE Linux Enterprise Module for Development Tools 15 SP3 kernel-default Released
SUSE Linux Enterprise Module for Development Tools 15 SP3 kernel-source Released
SUSE Linux Enterprise Module for Public Cloud 15 kernel-source-azure Affected
SUSE Linux Enterprise Module for Public Cloud 15 SP1 kernel-source-azure Affected
SUSE Linux Enterprise Module for Public Cloud 15 SP2 kernel-source-azure Released
SUSE Linux Enterprise Module for Public Cloud 15 SP3 kernel-source-azure Released
SUSE Linux Enterprise Point of Service 11 SP3 kernel-default Not affected
SUSE Linux Enterprise Point of Service 11 SP3 kernel-source Not affected
SUSE Linux Enterprise Real Time 12 SP5 kernel-source-rt Released
SUSE Linux Enterprise Server 11 SP4 LTSS kernel-default Not affected
SUSE Linux Enterprise Server 11 SP4 LTSS kernel-source Not affected
SUSE Linux Enterprise Server 12 SP2 BCL kernel-default Not affected
SUSE Linux Enterprise Server 12 SP2 BCL kernel-source Not affected
SUSE Linux Enterprise Server 12 SP2 LTSS ERICSSON kernel-default Not affected
SUSE Linux Enterprise Server 12 SP2 LTSS ERICSSON kernel-source Not affected
SUSE Linux Enterprise Server 12 SP2 LTSS SAP kernel-default Not affected
SUSE Linux Enterprise Server 12 SP2 LTSS SAP kernel-source Not affected
SUSE Linux Enterprise Server 12 SP3 BCL kernel-default Not affected
SUSE Linux Enterprise Server 12 SP3 BCL kernel-source Not affected
SUSE Linux Enterprise Server 12 SP3 BCL kernel-source-azure Not affected
SUSE Linux Enterprise Server 12 SP3 ESPOS kernel-default Not affected
SUSE Linux Enterprise Server 12 SP3 ESPOS kernel-source Not affected
SUSE Linux Enterprise Server 12 SP3 ESPOS kernel-source-azure Not affected
SUSE Linux Enterprise Server 12 SP3 LTSS kernel-default Not affected
SUSE Linux Enterprise Server 12 SP3 LTSS kernel-source Not affected
SUSE Linux Enterprise Server 12 SP3 LTSS kernel-source-azure Not affected
SUSE Linux Enterprise Server 12 SP4 ESPOS kernel-default Affected
SUSE Linux Enterprise Server 12 SP4 ESPOS kernel-source Affected
SUSE Linux Enterprise Server 12 SP4 ESPOS kernel-source-azure Affected
SUSE Linux Enterprise Server 12 SP4 LTSS kernel-default Affected
SUSE Linux Enterprise Server 12 SP4 LTSS kernel-source Affected
SUSE Linux Enterprise Server 12 SP4 LTSS kernel-source-azure Affected
SUSE Linux Enterprise Server 12 SP5 kernel-default Released
SUSE Linux Enterprise Server 12 SP5 kernel-source Released
SUSE Linux Enterprise Server 12 SP5 kernel-source-azure Released
SUSE Linux Enterprise Server 15 LTSS kernel-default Affected
SUSE Linux Enterprise Server 15 LTSS kernel-source Affected
SUSE Linux Enterprise Server 15 SP1 Business Critical Linux kernel-default Affected
SUSE Linux Enterprise Server 15 SP1 Business Critical Linux kernel-source Affected
SUSE Linux Enterprise Server 15 SP1 LTSS kernel-default Affected
SUSE Linux Enterprise Server 15 SP1 LTSS kernel-source Affected
SUSE Linux Enterprise Server ESPOS 15 kernel-default Affected
SUSE Linux Enterprise Server ESPOS 15 kernel-source Affected
SUSE Linux Enterprise Server for SAP Applications 12 SP3 kernel-default Not affected
SUSE Linux Enterprise Server for SAP Applications 12 SP3 kernel-source Not affected
SUSE Linux Enterprise Server for SAP Applications 12 SP3 kernel-source-azure Not affected
SUSE Linux Enterprise Server for SAP Applications 12 SP4 kernel-default Affected
SUSE Linux Enterprise Server for SAP Applications 12 SP4 kernel-source Affected
SUSE Linux Enterprise Server for SAP Applications 12 SP4 kernel-source-azure Affected
SUSE Linux Enterprise Server for SAP Applications 12 SP5 kernel-default Released
SUSE Linux Enterprise Server for SAP Applications 12 SP5 kernel-source Released
SUSE Linux Enterprise Server for SAP Applications 12 SP5 kernel-source-azure Released
SUSE Linux Enterprise Server for SAP Applications 15 kernel-default Affected
SUSE Linux Enterprise Server for SAP Applications 15 kernel-source Affected
SUSE Linux Enterprise Server for SAP Applications 15 SP1 kernel-default Affected
SUSE Linux Enterprise Server for SAP Applications 15 SP1 kernel-source Affected
SUSE Manager Proxy 4.0 kernel-default Affected
SUSE Manager Proxy 4.0 kernel-source Affected
SUSE Manager Retail Branch Server 4.0 kernel-default Affected
SUSE Manager Retail Branch Server 4.0 kernel-source Affected
SUSE Manager Server 4.0 kernel-default Affected
SUSE Manager Server 4.0 kernel-source Affected
SUSE OpenStack Cloud 8 kernel-default Not affected
SUSE OpenStack Cloud 8 kernel-source Not affected
SUSE OpenStack Cloud 8 kernel-source-azure Not affected
SUSE OpenStack Cloud 9 kernel-default Affected
SUSE OpenStack Cloud 9 kernel-source Affected
SUSE OpenStack Cloud 9 kernel-source-azure Affected
SUSE OpenStack Cloud Crowbar 8 kernel-default Not affected
SUSE OpenStack Cloud Crowbar 8 kernel-source Not affected
SUSE OpenStack Cloud Crowbar 8 kernel-source-azure Not affected
SUSE OpenStack Cloud Crowbar 9 kernel-default Affected
SUSE OpenStack Cloud Crowbar 9 kernel-source Affected
SUSE OpenStack Cloud Crowbar 9 kernel-source-azure Affected
SUSE Real Time Module kernel-source-rt Released