Upstream information

CVE-2024-26837 at MITRE

Description

In the Linux kernel, the following vulnerability has been resolved:

net: bridge: switchdev: Skip MDB replays of deferred events on offload

Before this change, generation of the list of MDB events to replay
would race against the creation of new group memberships, either from
the IGMP/MLD snooping logic or from user configuration.

While new memberships are immediately visible to walkers of
br->mdb_list, the notification of their existence to switchdev event
subscribers is deferred until a later point in time. So if a replay
list was generated during a time that overlapped with such a window,
it would also contain a replay of the not-yet-delivered event.

The driver would thus receive two copies of what the bridge internally
considered to be one single event. On destruction of the bridge, only
a single membership deletion event was therefore sent. As a
consequence of this, drivers which reference count memberships (at
least DSA), would be left with orphan groups in their hardware
database when the bridge was destroyed.

This is only an issue when replaying additions. While deletion events
may still be pending on the deferred queue, they will already have
been removed from br->mdb_list, so no duplicates can be generated in
that scenario.

To a user this meant that old group memberships, from a bridge in
which a port was previously attached, could be reanimated (in
hardware) when the port joined a new bridge, without the new bridge's
knowledge.

For example, on an mv88e6xxx system, create a snooping bridge and
immediately add a port to it:

root@infix-06-0b-00:~$ ip link add dev br0 up type bridge mcast_snooping 1 && \
> ip link set dev x3 up master br0

And then destroy the bridge:

root@infix-06-0b-00:~$ ip link del dev br0
root@infix-06-0b-00:~$ mvls atu
ADDRESS FID STATE Q F 0 1 2 3 4 5 6 7 8 9 a
DEV:0 Marvell 88E6393X
33:33:00:00:00:6a 1 static - - 0 . . . . . . . . . .
33:33:ff:87:e4:3f 1 static - - 0 . . . . . . . . . .
ff:ff:ff:ff:ff:ff 1 static - - 0 1 2 3 4 5 6 7 8 9 a
root@infix-06-0b-00:~$

The two IPv6 groups remain in the hardware database because the
port (x3) is notified of the host's membership twice: once via the
original event and once via a replay. Since only a single delete
notification is sent, the count remains at 1 when the bridge is
destroyed.

Then add the same port (or another port belonging to the same hardware
domain) to a new bridge, this time with snooping disabled:

root@infix-06-0b-00:~$ ip link add dev br1 up type bridge mcast_snooping 0 && \
> ip link set dev x3 up master br1

All multicast, including the two IPv6 groups from br0, should now be
flooded, according to the policy of br1. But instead the old
memberships are still active in the hardware database, causing the
switch to only forward traffic to those groups towards the CPU (port
0).

Eliminate the race in two steps:

1. Grab the write-side lock of the MDB while generating the replay
list.

This prevents new memberships from showing up while we are generating
the replay list. But it leaves the scenario in which a deferred event
was already generated, but not delivered, before we grabbed the
lock. Therefore:

2. Make sure that no deferred version of a replay event is already
enqueued to the switchdev deferred queue, before adding it to the
replay list, when replaying additions.

SUSE information

Overall state of this security issue: Revisit

This issue is currently rated as having low severity.

CVSS v3 Scores
  SUSE
Base Score 3.3
Vector CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality Impact None
Integrity Impact Low
Availability Impact None
CVSSv3 Version 3.1

Note from the SUSE Security Team on the kernel-default package

SUSE will no longer fix all CVEs in the Linux Kernel anymore, but declare some bug classes as won't fix. Please refer to TID 21496 for more details.

SUSE Bugzilla entry: 1222973 [IN_PROGRESS]

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
Container bci/bci-sle15-kernel-module-devel:15.6.24.6
  • kernel-default-devel >= 6.4.0-150600.23.22.1
  • kernel-devel >= 6.4.0-150600.23.22.1
  • kernel-macros >= 6.4.0-150600.23.22.1
  • kernel-syms >= 6.4.0-150600.23.22.1
Container suse/hpc/warewulf4-x86_64/sle-hpc-node:15.6.17.5.37
Image SLES15-SP6-CHOST-BYOS
Image SLES15-SP6-CHOST-BYOS-Aliyun
Image SLES15-SP6-CHOST-BYOS-Azure
Image SLES15-SP6-CHOST-BYOS-EC2
Image SLES15-SP6-CHOST-BYOS-GCE
Image SLES15-SP6-CHOST-BYOS-GDC
Image SLES15-SP6-CHOST-BYOS-SAP-CCloud
  • kernel-default >= 6.4.0-150600.23.22.1
Image SLES15-SP6-SAP-Azure-LI-BYOS
Image SLES15-SP6-SAP-Azure-LI-BYOS-Production
Image SLES15-SP6-SAP-Azure-VLI-BYOS
Image SLES15-SP6-SAP-Azure-VLI-BYOS-Production
  • cluster-md-kmp-default >= 6.4.0-150600.23.22.1
  • dlm-kmp-default >= 6.4.0-150600.23.22.1
  • gfs2-kmp-default >= 6.4.0-150600.23.22.1
  • kernel-default >= 6.4.0-150600.23.22.1
  • ocfs2-kmp-default >= 6.4.0-150600.23.22.1
SUSE Liberty Linux 8
  • bpftool >= 4.18.0-553.16.1.el8_10
  • kernel >= 4.18.0-553.16.1.el8_10
  • kernel-abi-stablelists >= 4.18.0-553.16.1.el8_10
  • kernel-core >= 4.18.0-553.16.1.el8_10
  • kernel-cross-headers >= 4.18.0-553.16.1.el8_10
  • kernel-debug >= 4.18.0-553.16.1.el8_10
  • kernel-debug-core >= 4.18.0-553.16.1.el8_10
  • kernel-debug-devel >= 4.18.0-553.16.1.el8_10
  • kernel-debug-modules >= 4.18.0-553.16.1.el8_10
  • kernel-debug-modules-extra >= 4.18.0-553.16.1.el8_10
  • kernel-devel >= 4.18.0-553.16.1.el8_10
  • kernel-doc >= 4.18.0-553.16.1.el8_10
  • kernel-headers >= 4.18.0-553.16.1.el8_10
  • kernel-modules >= 4.18.0-553.16.1.el8_10
  • kernel-modules-extra >= 4.18.0-553.16.1.el8_10
  • kernel-tools >= 4.18.0-553.16.1.el8_10
  • kernel-tools-libs >= 4.18.0-553.16.1.el8_10
  • kernel-tools-libs-devel >= 4.18.0-553.16.1.el8_10
  • perf >= 4.18.0-553.16.1.el8_10
  • python3-perf >= 4.18.0-553.16.1.el8_10
Patchnames:
RHSA-2024:5101
SUSE Linux Enterprise Desktop 15 SP5
  • kernel-64kb >= 5.14.21-150500.55.83.1
  • kernel-64kb-devel >= 5.14.21-150500.55.83.1
  • kernel-default >= 5.14.21-150500.55.83.1
  • kernel-default-base >= 5.14.21-150500.55.83.1.150500.6.37.1
  • kernel-default-devel >= 5.14.21-150500.55.83.1
  • kernel-default-extra >= 5.14.21-150500.55.83.1
  • kernel-devel >= 5.14.21-150500.55.83.1
  • kernel-docs >= 5.14.21-150500.55.83.1
  • kernel-macros >= 5.14.21-150500.55.83.1
  • kernel-obs-build >= 5.14.21-150500.55.83.1
  • kernel-source >= 5.14.21-150500.55.83.1
  • kernel-syms >= 5.14.21-150500.55.83.1
  • kernel-zfcpdump >= 5.14.21-150500.55.83.1
Patchnames:
SUSE-SLE-Module-Basesystem-15-SP5-2024-3569
SUSE-SLE-Module-Development-Tools-15-SP5-2024-3569
SUSE-SLE-Product-WE-15-SP5-2024-3569
SUSE Linux Enterprise Desktop 15 SP6
  • kernel-64kb >= 6.4.0-150600.23.22.1
  • kernel-64kb-devel >= 6.4.0-150600.23.22.1
  • kernel-default >= 6.4.0-150600.23.22.1
  • kernel-default-base >= 6.4.0-150600.23.22.1.150600.12.8.3
  • kernel-default-devel >= 6.4.0-150600.23.22.1
  • kernel-default-extra >= 6.4.0-150600.23.22.1
  • kernel-devel >= 6.4.0-150600.23.22.1
  • kernel-docs >= 6.4.0-150600.23.22.1
  • kernel-macros >= 6.4.0-150600.23.22.1
  • kernel-obs-build >= 6.4.0-150600.23.22.1
  • kernel-source >= 6.4.0-150600.23.22.1
  • kernel-syms >= 6.4.0-150600.23.22.1
  • kernel-zfcpdump >= 6.4.0-150600.23.22.1
Patchnames:
SUSE-SLE-Module-Basesystem-15-SP6-2024-3383
SUSE-SLE-Module-Development-Tools-15-SP6-2024-3383
SUSE-SLE-Product-WE-15-SP6-2024-3383
SUSE Linux Enterprise High Availability Extension 15 SP5
  • cluster-md-kmp-default >= 5.14.21-150500.55.83.1
  • dlm-kmp-default >= 5.14.21-150500.55.83.1
  • gfs2-kmp-default >= 5.14.21-150500.55.83.1
  • ocfs2-kmp-default >= 5.14.21-150500.55.83.1
Patchnames:
SUSE-SLE-Product-HA-15-SP5-2024-3569
SUSE Linux Enterprise High Availability Extension 15 SP6
  • cluster-md-kmp-default >= 6.4.0-150600.23.22.1
  • dlm-kmp-default >= 6.4.0-150600.23.22.1
  • gfs2-kmp-default >= 6.4.0-150600.23.22.1
  • ocfs2-kmp-default >= 6.4.0-150600.23.22.1
Patchnames:
SUSE-SLE-Product-HA-15-SP6-2024-3383
SUSE Linux Enterprise High Performance Computing 15 SP5
  • kernel-64kb >= 5.14.21-150500.55.83.1
  • kernel-64kb-devel >= 5.14.21-150500.55.83.1
  • kernel-default >= 5.14.21-150500.55.83.1
  • kernel-default-base >= 5.14.21-150500.55.83.1.150500.6.37.1
  • kernel-default-devel >= 5.14.21-150500.55.83.1
  • kernel-devel >= 5.14.21-150500.55.83.1
  • kernel-docs >= 5.14.21-150500.55.83.1
  • kernel-macros >= 5.14.21-150500.55.83.1
  • kernel-obs-build >= 5.14.21-150500.55.83.1
  • kernel-source >= 5.14.21-150500.55.83.1
  • kernel-syms >= 5.14.21-150500.55.83.1
  • kernel-zfcpdump >= 5.14.21-150500.55.83.1
  • reiserfs-kmp-default >= 5.14.21-150500.55.83.1
Patchnames:
SUSE-SLE-Module-Basesystem-15-SP5-2024-3569
SUSE-SLE-Module-Development-Tools-15-SP5-2024-3569
SUSE-SLE-Module-Legacy-15-SP5-2024-3569
SUSE Linux Enterprise High Performance Computing 15 SP6
  • kernel-64kb >= 6.4.0-150600.23.22.1
  • kernel-64kb-devel >= 6.4.0-150600.23.22.1
  • kernel-azure >= 6.4.0-150600.8.11.1
  • kernel-azure-devel >= 6.4.0-150600.8.11.1
  • kernel-default >= 6.4.0-150600.23.22.1
  • kernel-default-base >= 6.4.0-150600.23.22.1.150600.12.8.3
  • kernel-default-devel >= 6.4.0-150600.23.22.1
  • kernel-devel >= 6.4.0-150600.23.22.1
  • kernel-devel-azure >= 6.4.0-150600.8.11.1
  • kernel-docs >= 6.4.0-150600.23.22.1
  • kernel-macros >= 6.4.0-150600.23.22.1
  • kernel-obs-build >= 6.4.0-150600.23.22.1
  • kernel-source >= 6.4.0-150600.23.22.1
  • kernel-source-azure >= 6.4.0-150600.8.11.1
  • kernel-syms >= 6.4.0-150600.23.22.1
  • kernel-syms-azure >= 6.4.0-150600.8.11.1
  • kernel-zfcpdump >= 6.4.0-150600.23.22.1
  • reiserfs-kmp-default >= 6.4.0-150600.23.22.1
Patchnames:
SUSE-SLE-Module-Basesystem-15-SP6-2024-3383
SUSE-SLE-Module-Development-Tools-15-SP6-2024-3383
SUSE-SLE-Module-Legacy-15-SP6-2024-3383
SUSE-SLE-Module-Public-Cloud-15-SP6-2024-3194
SUSE Linux Enterprise Live Patching 15 SP5
    Patchnames:
    SUSE-SLE-Module-Live-Patching-15-SP5-2024-3569
    SUSE Linux Enterprise Live Patching 15 SP6
      Patchnames:
      SUSE-SLE-Module-Live-Patching-15-SP6-2024-3195
      SUSE-SLE-Module-Live-Patching-15-SP6-2024-3383
      SUSE Linux Enterprise Micro 5.5
      • kernel-default >= 5.14.21-150500.55.83.1
      • kernel-default-base >= 5.14.21-150500.55.83.1.150500.6.37.1
      Patchnames:
      SUSE-SLE-Micro-5.5-2024-3569
      SUSE Linux Enterprise Module for Basesystem 15 SP5
      • kernel-64kb >= 5.14.21-150500.55.83.1
      • kernel-64kb-devel >= 5.14.21-150500.55.83.1
      • kernel-default >= 5.14.21-150500.55.83.1
      • kernel-default-base >= 5.14.21-150500.55.83.1.150500.6.37.1
      • kernel-default-devel >= 5.14.21-150500.55.83.1
      • kernel-devel >= 5.14.21-150500.55.83.1
      • kernel-macros >= 5.14.21-150500.55.83.1
      • kernel-zfcpdump >= 5.14.21-150500.55.83.1
      Patchnames:
      SUSE-SLE-Module-Basesystem-15-SP5-2024-3569
      SUSE Linux Enterprise Module for Basesystem 15 SP6
      • kernel-64kb >= 6.4.0-150600.23.22.1
      • kernel-64kb-devel >= 6.4.0-150600.23.22.1
      • kernel-default >= 6.4.0-150600.23.22.1
      • kernel-default-base >= 6.4.0-150600.23.22.1.150600.12.8.3
      • kernel-default-devel >= 6.4.0-150600.23.22.1
      • kernel-devel >= 6.4.0-150600.23.22.1
      • kernel-macros >= 6.4.0-150600.23.22.1
      • kernel-zfcpdump >= 6.4.0-150600.23.22.1
      Patchnames:
      SUSE-SLE-Module-Basesystem-15-SP6-2024-3383
      SUSE Linux Enterprise Module for Development Tools 15 SP5
      • kernel-docs >= 5.14.21-150500.55.83.1
      • kernel-obs-build >= 5.14.21-150500.55.83.1
      • kernel-source >= 5.14.21-150500.55.83.1
      • kernel-syms >= 5.14.21-150500.55.83.1
      Patchnames:
      SUSE-SLE-Module-Development-Tools-15-SP5-2024-3569
      SUSE Linux Enterprise Module for Development Tools 15 SP6
      • kernel-docs >= 6.4.0-150600.23.22.1
      • kernel-obs-build >= 6.4.0-150600.23.22.1
      • kernel-source >= 6.4.0-150600.23.22.1
      • kernel-syms >= 6.4.0-150600.23.22.1
      Patchnames:
      SUSE-SLE-Module-Development-Tools-15-SP6-2024-3383
      SUSE Linux Enterprise Module for Legacy 15 SP5
      • reiserfs-kmp-default >= 5.14.21-150500.55.83.1
      Patchnames:
      SUSE-SLE-Module-Legacy-15-SP5-2024-3569
      SUSE Linux Enterprise Module for Legacy 15 SP6
      • reiserfs-kmp-default >= 6.4.0-150600.23.22.1
      Patchnames:
      SUSE-SLE-Module-Legacy-15-SP6-2024-3383
      SUSE Linux Enterprise Module for Public Cloud 15 SP6
      • kernel-azure >= 6.4.0-150600.8.11.1
      • kernel-azure-devel >= 6.4.0-150600.8.11.1
      • kernel-devel-azure >= 6.4.0-150600.8.11.1
      • kernel-source-azure >= 6.4.0-150600.8.11.1
      • kernel-syms-azure >= 6.4.0-150600.8.11.1
      Patchnames:
      SUSE-SLE-Module-Public-Cloud-15-SP6-2024-3194
      SUSE Linux Enterprise Real Time 15 SP6
      SUSE Real Time Module 15 SP6
      • cluster-md-kmp-rt >= 6.4.0-150600.10.8.3
      • dlm-kmp-rt >= 6.4.0-150600.10.8.3
      • gfs2-kmp-rt >= 6.4.0-150600.10.8.3
      • kernel-devel-rt >= 6.4.0-150600.10.8.3
      • kernel-rt >= 6.4.0-150600.10.8.3
      • kernel-rt-devel >= 6.4.0-150600.10.8.3
      • kernel-rt_debug >= 6.4.0-150600.10.8.3
      • kernel-rt_debug-devel >= 6.4.0-150600.10.8.3
      • kernel-source-rt >= 6.4.0-150600.10.8.3
      • kernel-syms-rt >= 6.4.0-150600.10.8.1
      • ocfs2-kmp-rt >= 6.4.0-150600.10.8.3
      Patchnames:
      SUSE-SLE-Module-RT-15-SP6-2024-3195
      SUSE Linux Enterprise Server 15 SP5
      SUSE Linux Enterprise Server for SAP Applications 15 SP5
      • kernel-64kb >= 5.14.21-150500.55.83.1
      • kernel-64kb-devel >= 5.14.21-150500.55.83.1
      • kernel-default >= 5.14.21-150500.55.83.1
      • kernel-default-base >= 5.14.21-150500.55.83.1.150500.6.37.1
      • kernel-default-devel >= 5.14.21-150500.55.83.1
      • kernel-default-extra >= 5.14.21-150500.55.83.1
      • kernel-devel >= 5.14.21-150500.55.83.1
      • kernel-docs >= 5.14.21-150500.55.83.1
      • kernel-macros >= 5.14.21-150500.55.83.1
      • kernel-obs-build >= 5.14.21-150500.55.83.1
      • kernel-source >= 5.14.21-150500.55.83.1
      • kernel-syms >= 5.14.21-150500.55.83.1
      • kernel-zfcpdump >= 5.14.21-150500.55.83.1
      • reiserfs-kmp-default >= 5.14.21-150500.55.83.1
      Patchnames:
      SUSE-SLE-Module-Basesystem-15-SP5-2024-3569
      SUSE-SLE-Module-Development-Tools-15-SP5-2024-3569
      SUSE-SLE-Module-Legacy-15-SP5-2024-3569
      SUSE-SLE-Product-WE-15-SP5-2024-3569
      SUSE Linux Enterprise Server 15 SP6
      SUSE Linux Enterprise Server for SAP Applications 15 SP6
      • kernel-64kb >= 6.4.0-150600.23.22.1
      • kernel-64kb-devel >= 6.4.0-150600.23.22.1
      • kernel-azure >= 6.4.0-150600.8.11.1
      • kernel-azure-devel >= 6.4.0-150600.8.11.1
      • kernel-default >= 6.4.0-150600.23.22.1
      • kernel-default-base >= 6.4.0-150600.23.22.1.150600.12.8.3
      • kernel-default-devel >= 6.4.0-150600.23.22.1
      • kernel-default-extra >= 6.4.0-150600.23.22.1
      • kernel-devel >= 6.4.0-150600.23.22.1
      • kernel-devel-azure >= 6.4.0-150600.8.11.1
      • kernel-docs >= 6.4.0-150600.23.22.1
      • kernel-macros >= 6.4.0-150600.23.22.1
      • kernel-obs-build >= 6.4.0-150600.23.22.1
      • kernel-source >= 6.4.0-150600.23.22.1
      • kernel-source-azure >= 6.4.0-150600.8.11.1
      • kernel-syms >= 6.4.0-150600.23.22.1
      • kernel-syms-azure >= 6.4.0-150600.8.11.1
      • kernel-zfcpdump >= 6.4.0-150600.23.22.1
      • reiserfs-kmp-default >= 6.4.0-150600.23.22.1
      Patchnames:
      SUSE-SLE-Module-Basesystem-15-SP6-2024-3383
      SUSE-SLE-Module-Development-Tools-15-SP6-2024-3383
      SUSE-SLE-Module-Legacy-15-SP6-2024-3383
      SUSE-SLE-Module-Public-Cloud-15-SP6-2024-3194
      SUSE-SLE-Product-WE-15-SP6-2024-3383
      SUSE Linux Enterprise Workstation Extension 15 SP5
      • kernel-default-extra >= 5.14.21-150500.55.83.1
      Patchnames:
      SUSE-SLE-Product-WE-15-SP5-2024-3569
      SUSE Linux Enterprise Workstation Extension 15 SP6
      • kernel-default-extra >= 6.4.0-150600.23.22.1
      Patchnames:
      SUSE-SLE-Product-WE-15-SP6-2024-3383
      openSUSE Leap 15.5
      • cluster-md-kmp-64kb >= 5.14.21-150500.55.83.1
      • cluster-md-kmp-default >= 5.14.21-150500.55.83.1
      • dlm-kmp-64kb >= 5.14.21-150500.55.83.1
      • dlm-kmp-default >= 5.14.21-150500.55.83.1
      • dtb-allwinner >= 5.14.21-150500.55.83.1
      • dtb-altera >= 5.14.21-150500.55.83.1
      • dtb-amazon >= 5.14.21-150500.55.83.1
      • dtb-amd >= 5.14.21-150500.55.83.1
      • dtb-amlogic >= 5.14.21-150500.55.83.1
      • dtb-apm >= 5.14.21-150500.55.83.1
      • dtb-apple >= 5.14.21-150500.55.83.1
      • dtb-arm >= 5.14.21-150500.55.83.1
      • dtb-broadcom >= 5.14.21-150500.55.83.1
      • dtb-cavium >= 5.14.21-150500.55.83.1
      • dtb-exynos >= 5.14.21-150500.55.83.1
      • dtb-freescale >= 5.14.21-150500.55.83.1
      • dtb-hisilicon >= 5.14.21-150500.55.83.1
      • dtb-lg >= 5.14.21-150500.55.83.1
      • dtb-marvell >= 5.14.21-150500.55.83.1
      • dtb-mediatek >= 5.14.21-150500.55.83.1
      • dtb-nvidia >= 5.14.21-150500.55.83.1
      • dtb-qcom >= 5.14.21-150500.55.83.1
      • dtb-renesas >= 5.14.21-150500.55.83.1
      • dtb-rockchip >= 5.14.21-150500.55.83.1
      • dtb-socionext >= 5.14.21-150500.55.83.1
      • dtb-sprd >= 5.14.21-150500.55.83.1
      • dtb-xilinx >= 5.14.21-150500.55.83.1
      • gfs2-kmp-64kb >= 5.14.21-150500.55.83.1
      • gfs2-kmp-default >= 5.14.21-150500.55.83.1
      • kernel-64kb >= 5.14.21-150500.55.83.1
      • kernel-64kb-devel >= 5.14.21-150500.55.83.1
      • kernel-64kb-extra >= 5.14.21-150500.55.83.1
      • kernel-64kb-livepatch-devel >= 5.14.21-150500.55.83.1
      • kernel-64kb-optional >= 5.14.21-150500.55.83.1
      • kernel-debug >= 5.14.21-150500.55.83.1
      • kernel-debug-devel >= 5.14.21-150500.55.83.1
      • kernel-debug-livepatch-devel >= 5.14.21-150500.55.83.1
      • kernel-debug-vdso >= 5.14.21-150500.55.83.1
      • kernel-default >= 5.14.21-150500.55.83.1
      • kernel-default-base >= 5.14.21-150500.55.83.1.150500.6.37.1
      • kernel-default-base-rebuild >= 5.14.21-150500.55.83.1.150500.6.37.1
      • kernel-default-devel >= 5.14.21-150500.55.83.1
      • kernel-default-extra >= 5.14.21-150500.55.83.1
      • kernel-default-livepatch >= 5.14.21-150500.55.83.1
      • kernel-default-livepatch-devel >= 5.14.21-150500.55.83.1
      • kernel-default-optional >= 5.14.21-150500.55.83.1
      • kernel-default-vdso >= 5.14.21-150500.55.83.1
      • kernel-devel >= 5.14.21-150500.55.83.1
      • kernel-docs >= 5.14.21-150500.55.83.1
      • kernel-docs-html >= 5.14.21-150500.55.83.1
      • kernel-kvmsmall >= 5.14.21-150500.55.83.1
      • kernel-kvmsmall-devel >= 5.14.21-150500.55.83.1
      • kernel-kvmsmall-livepatch-devel >= 5.14.21-150500.55.83.1
      • kernel-kvmsmall-vdso >= 5.14.21-150500.55.83.1
      • kernel-macros >= 5.14.21-150500.55.83.1
      • kernel-obs-build >= 5.14.21-150500.55.83.1
      • kernel-obs-qa >= 5.14.21-150500.55.83.1
      • kernel-source >= 5.14.21-150500.55.83.1
      • kernel-source-vanilla >= 5.14.21-150500.55.83.1
      • kernel-syms >= 5.14.21-150500.55.83.1
      • kernel-zfcpdump >= 5.14.21-150500.55.83.1
      • kselftests-kmp-64kb >= 5.14.21-150500.55.83.1
      • kselftests-kmp-default >= 5.14.21-150500.55.83.1
      • ocfs2-kmp-64kb >= 5.14.21-150500.55.83.1
      • ocfs2-kmp-default >= 5.14.21-150500.55.83.1
      • reiserfs-kmp-64kb >= 5.14.21-150500.55.83.1
      • reiserfs-kmp-default >= 5.14.21-150500.55.83.1
      Patchnames:
      openSUSE-SLE-15.5-2024-3569
      openSUSE Leap 15.6
      • cluster-md-kmp-64kb >= 6.4.0-150600.23.22.1
      • cluster-md-kmp-azure >= 6.4.0-150600.8.11.1
      • cluster-md-kmp-default >= 6.4.0-150600.23.22.1
      • cluster-md-kmp-rt >= 6.4.0-150600.10.8.3
      • dlm-kmp-64kb >= 6.4.0-150600.23.22.1
      • dlm-kmp-azure >= 6.4.0-150600.8.11.1
      • dlm-kmp-default >= 6.4.0-150600.23.22.1
      • dlm-kmp-rt >= 6.4.0-150600.10.8.3
      • dtb-allwinner >= 6.4.0-150600.23.22.1
      • dtb-altera >= 6.4.0-150600.23.22.1
      • dtb-amazon >= 6.4.0-150600.23.22.1
      • dtb-amd >= 6.4.0-150600.23.22.1
      • dtb-amlogic >= 6.4.0-150600.23.22.1
      • dtb-apm >= 6.4.0-150600.23.22.1
      • dtb-apple >= 6.4.0-150600.23.22.1
      • dtb-arm >= 6.4.0-150600.23.22.1
      • dtb-broadcom >= 6.4.0-150600.23.22.1
      • dtb-cavium >= 6.4.0-150600.23.22.1
      • dtb-exynos >= 6.4.0-150600.23.22.1
      • dtb-freescale >= 6.4.0-150600.23.22.1
      • dtb-hisilicon >= 6.4.0-150600.23.22.1
      • dtb-lg >= 6.4.0-150600.23.22.1
      • dtb-marvell >= 6.4.0-150600.23.22.1
      • dtb-mediatek >= 6.4.0-150600.23.22.1
      • dtb-nvidia >= 6.4.0-150600.23.22.1
      • dtb-qcom >= 6.4.0-150600.23.22.1
      • dtb-renesas >= 6.4.0-150600.23.22.1
      • dtb-rockchip >= 6.4.0-150600.23.22.1
      • dtb-socionext >= 6.4.0-150600.23.22.1
      • dtb-sprd >= 6.4.0-150600.23.22.1
      • dtb-xilinx >= 6.4.0-150600.23.22.1
      • gfs2-kmp-64kb >= 6.4.0-150600.23.22.1
      • gfs2-kmp-azure >= 6.4.0-150600.8.11.1
      • gfs2-kmp-default >= 6.4.0-150600.23.22.1
      • gfs2-kmp-rt >= 6.4.0-150600.10.8.3
      • kernel-64kb >= 6.4.0-150600.23.22.1
      • kernel-64kb-devel >= 6.4.0-150600.23.22.1
      • kernel-64kb-extra >= 6.4.0-150600.23.22.1
      • kernel-64kb-livepatch-devel >= 6.4.0-150600.23.22.1
      • kernel-64kb-optional >= 6.4.0-150600.23.22.1
      • kernel-azure >= 6.4.0-150600.8.11.1
      • kernel-azure-devel >= 6.4.0-150600.8.11.1
      • kernel-azure-extra >= 6.4.0-150600.8.11.1
      • kernel-azure-livepatch-devel >= 6.4.0-150600.8.11.1
      • kernel-azure-optional >= 6.4.0-150600.8.11.1
      • kernel-azure-vdso >= 6.4.0-150600.8.11.1
      • kernel-debug >= 6.4.0-150600.23.22.1
      • kernel-debug-devel >= 6.4.0-150600.23.22.1
      • kernel-debug-livepatch-devel >= 6.4.0-150600.23.22.1
      • kernel-debug-vdso >= 6.4.0-150600.23.22.1
      • kernel-default >= 6.4.0-150600.23.22.1
      • kernel-default-base >= 6.4.0-150600.23.22.1.150600.12.8.3
      • kernel-default-base-rebuild >= 6.4.0-150600.23.22.1.150600.12.8.3
      • kernel-default-devel >= 6.4.0-150600.23.22.1
      • kernel-default-extra >= 6.4.0-150600.23.22.1
      • kernel-default-livepatch >= 6.4.0-150600.23.22.1
      • kernel-default-livepatch-devel >= 6.4.0-150600.23.22.1
      • kernel-default-optional >= 6.4.0-150600.23.22.1
      • kernel-default-vdso >= 6.4.0-150600.23.22.1
      • kernel-devel >= 6.4.0-150600.23.22.1
      • kernel-devel-azure >= 6.4.0-150600.8.11.1
      • kernel-devel-rt >= 6.4.0-150600.10.8.3
      • kernel-docs >= 6.4.0-150600.23.22.1
      • kernel-docs-html >= 6.4.0-150600.23.22.1
      • kernel-kvmsmall >= 6.4.0-150600.23.22.1
      • kernel-kvmsmall-devel >= 6.4.0-150600.23.22.1
      • kernel-kvmsmall-livepatch-devel >= 6.4.0-150600.23.22.1
      • kernel-kvmsmall-vdso >= 6.4.0-150600.23.22.1
      • kernel-macros >= 6.4.0-150600.23.22.1
      • kernel-obs-build >= 6.4.0-150600.23.22.1
      • kernel-obs-qa >= 6.4.0-150600.23.22.1
      • kernel-rt >= 6.4.0-150600.10.8.3
      • kernel-rt-devel >= 6.4.0-150600.10.8.3
      • kernel-rt-extra >= 6.4.0-150600.10.8.3
      • kernel-rt-livepatch-devel >= 6.4.0-150600.10.8.3
      • kernel-rt-optional >= 6.4.0-150600.10.8.3
      • kernel-rt-vdso >= 6.4.0-150600.10.8.3
      • kernel-rt_debug >= 6.4.0-150600.10.8.3
      • kernel-rt_debug-devel >= 6.4.0-150600.10.8.3
      • kernel-rt_debug-livepatch-devel >= 6.4.0-150600.10.8.3
      • kernel-rt_debug-vdso >= 6.4.0-150600.10.8.3
      • kernel-source >= 6.4.0-150600.23.22.1
      • kernel-source-azure >= 6.4.0-150600.8.11.1
      • kernel-source-rt >= 6.4.0-150600.10.8.3
      • kernel-source-vanilla >= 6.4.0-150600.23.22.1
      • kernel-syms >= 6.4.0-150600.23.22.1
      • kernel-syms-azure >= 6.4.0-150600.8.11.1
      • kernel-syms-rt >= 6.4.0-150600.10.8.1
      • kernel-zfcpdump >= 6.4.0-150600.23.22.1
      • kselftests-kmp-64kb >= 6.4.0-150600.23.22.1
      • kselftests-kmp-azure >= 6.4.0-150600.8.11.1
      • kselftests-kmp-default >= 6.4.0-150600.23.22.1
      • kselftests-kmp-rt >= 6.4.0-150600.10.8.3
      • ocfs2-kmp-64kb >= 6.4.0-150600.23.22.1
      • ocfs2-kmp-azure >= 6.4.0-150600.8.11.1
      • ocfs2-kmp-default >= 6.4.0-150600.23.22.1
      • ocfs2-kmp-rt >= 6.4.0-150600.10.8.3
      • reiserfs-kmp-64kb >= 6.4.0-150600.23.22.1
      • reiserfs-kmp-azure >= 6.4.0-150600.8.11.1
      • reiserfs-kmp-default >= 6.4.0-150600.23.22.1
      • reiserfs-kmp-rt >= 6.4.0-150600.10.8.3
      Patchnames:
      openSUSE-SLE-15.6-2024-3194
      openSUSE-SLE-15.6-2024-3195
      openSUSE-SLE-15.6-2024-3383
      openSUSE Leap Micro 5.5
      • kernel-default >= 5.14.21-150500.55.83.1
      • kernel-default-base >= 5.14.21-150500.55.83.1.150500.6.37.1
      Patchnames:
      openSUSE-Leap-Micro-5.5-2024-3569

      List of packages in QA

      Product(s) Package(s)
      SUSE Linux Enterprise Micro 5.5
      • kernel-rt >= 5.14.21-150500.13.73.1
      • kernel-source-rt >= 5.14.21-150500.13.73.1
      SUSE Linux Enterprise Module for Public Cloud 15 SP5
      • kernel-azure >= 5.14.21-150500.33.69.1
      • kernel-azure-devel >= 5.14.21-150500.33.69.1
      • kernel-devel-azure >= 5.14.21-150500.33.69.1
      • kernel-source-azure >= 5.14.21-150500.33.69.1
      • kernel-syms-azure >= 5.14.21-150500.33.69.1
      SUSE Linux Enterprise Server 15 SP5
      • kernel-azure >= 5.14.21-150500.33.69.1
      • kernel-azure-devel >= 5.14.21-150500.33.69.1
      • kernel-devel-azure >= 5.14.21-150500.33.69.1
      • kernel-source-azure >= 5.14.21-150500.33.69.1
      • kernel-syms-azure >= 5.14.21-150500.33.69.1
      SUSE Linux Enterprise Server for SAP Applications 15 SP5
      • kernel-azure >= 5.14.21-150500.33.69.1
      • kernel-azure-devel >= 5.14.21-150500.33.69.1
      • kernel-devel-azure >= 5.14.21-150500.33.69.1
      • kernel-source-azure >= 5.14.21-150500.33.69.1
      • kernel-syms-azure >= 5.14.21-150500.33.69.1
      SUSE Linux Enterprise High Performance Computing 15 SP5
      • kernel-azure >= 5.14.21-150500.33.69.1
      • kernel-azure-devel >= 5.14.21-150500.33.69.1
      • kernel-devel-azure >= 5.14.21-150500.33.69.1
      • kernel-source-azure >= 5.14.21-150500.33.69.1
      • kernel-syms-azure >= 5.14.21-150500.33.69.1
      SUSE Real Time Module 15 SP5
      • cluster-md-kmp-rt >= 5.14.21-150500.13.73.1
      • dlm-kmp-rt >= 5.14.21-150500.13.73.1
      • gfs2-kmp-rt >= 5.14.21-150500.13.73.1
      • kernel-devel-rt >= 5.14.21-150500.13.73.1
      • kernel-rt >= 5.14.21-150500.13.73.1
      • kernel-rt-devel >= 5.14.21-150500.13.73.1
      • kernel-rt-vdso >= 5.14.21-150500.13.73.1
      • kernel-rt_debug >= 5.14.21-150500.13.73.1
      • kernel-rt_debug-devel >= 5.14.21-150500.13.73.1
      • kernel-rt_debug-vdso >= 5.14.21-150500.13.73.1
      • kernel-source-rt >= 5.14.21-150500.13.73.1
      • kernel-syms-rt >= 5.14.21-150500.13.73.1
      • ocfs2-kmp-rt >= 5.14.21-150500.13.73.1
      SUSE Linux Enterprise Real Time 15 SP5
      • cluster-md-kmp-rt >= 5.14.21-150500.13.73.1
      • dlm-kmp-rt >= 5.14.21-150500.13.73.1
      • gfs2-kmp-rt >= 5.14.21-150500.13.73.1
      • kernel-devel-rt >= 5.14.21-150500.13.73.1
      • kernel-rt >= 5.14.21-150500.13.73.1
      • kernel-rt-devel >= 5.14.21-150500.13.73.1
      • kernel-rt-vdso >= 5.14.21-150500.13.73.1
      • kernel-rt_debug >= 5.14.21-150500.13.73.1
      • kernel-rt_debug-devel >= 5.14.21-150500.13.73.1
      • kernel-rt_debug-vdso >= 5.14.21-150500.13.73.1
      • kernel-source-rt >= 5.14.21-150500.13.73.1
      • kernel-syms-rt >= 5.14.21-150500.13.73.1
      • ocfs2-kmp-rt >= 5.14.21-150500.13.73.1


      First public cloud image revisions this CVE is fixed in:


      Status of this issue by product and package

      Please note that this evaluation state might be work in progress, incomplete or outdated. Also information for service packs in the LTSS phase is only included for issues meeting the LTSS criteria. If in doubt, feel free to contact us for clarification. The updates are grouped by state of their lifecycle. SUSE product lifecycles are documented on the lifecycle page.

      Product(s) Source package State
      Products under general support and receiving all security fixes.
      SLES15-SP5-CHOST-BYOS-Aliyun kernel-default In progress
      SLES15-SP5-CHOST-BYOS-Azure kernel-default In progress
      SLES15-SP5-CHOST-BYOS-EC2 kernel-default In progress
      SLES15-SP5-CHOST-BYOS-GCE kernel-default In progress
      SLES15-SP5-CHOST-BYOS-SAP-CCloud kernel-default In progress
      SUSE Linux Enterprise Desktop 15 SP5 kernel-64kb Released
      SUSE Linux Enterprise Desktop 15 SP5 kernel-default Released
      SUSE Linux Enterprise Desktop 15 SP5 kernel-default-base Released
      SUSE Linux Enterprise Desktop 15 SP5 kernel-docs Released
      SUSE Linux Enterprise Desktop 15 SP5 kernel-obs-build Released
      SUSE Linux Enterprise Desktop 15 SP5 kernel-source Released
      SUSE Linux Enterprise Desktop 15 SP5 kernel-syms Released
      SUSE Linux Enterprise Desktop 15 SP5 kernel-zfcpdump Released
      SUSE Linux Enterprise Desktop 15 SP6 kernel-64kb Released
      SUSE Linux Enterprise Desktop 15 SP6 kernel-default Released
      SUSE Linux Enterprise Desktop 15 SP6 kernel-default-base Released
      SUSE Linux Enterprise Desktop 15 SP6 kernel-docs Released
      SUSE Linux Enterprise Desktop 15 SP6 kernel-obs-build Released
      SUSE Linux Enterprise Desktop 15 SP6 kernel-source Released
      SUSE Linux Enterprise Desktop 15 SP6 kernel-syms Released
      SUSE Linux Enterprise Desktop 15 SP6 kernel-zfcpdump Released
      SUSE Linux Enterprise High Availability Extension 15 SP5 kernel-default Released
      SUSE Linux Enterprise High Availability Extension 15 SP6 kernel-default Released
      SUSE Linux Enterprise High Performance Computing 12 SP5 kernel-default Not affected
      SUSE Linux Enterprise High Performance Computing 12 SP5 kernel-source Not affected
      SUSE Linux Enterprise High Performance Computing 12 SP5 kernel-source-azure Not affected
      SUSE Linux Enterprise High Performance Computing 15 SP5 kernel-64kb Released
      SUSE Linux Enterprise High Performance Computing 15 SP5 kernel-azure In progress
      SUSE Linux Enterprise High Performance Computing 15 SP5 kernel-default Released
      SUSE Linux Enterprise High Performance Computing 15 SP5 kernel-default-base Released
      SUSE Linux Enterprise High Performance Computing 15 SP5 kernel-docs Released
      SUSE Linux Enterprise High Performance Computing 15 SP5 kernel-obs-build Released
      SUSE Linux Enterprise High Performance Computing 15 SP5 kernel-source Released
      SUSE Linux Enterprise High Performance Computing 15 SP5 kernel-source-azure In progress
      SUSE Linux Enterprise High Performance Computing 15 SP5 kernel-syms Released
      SUSE Linux Enterprise High Performance Computing 15 SP5 kernel-syms-azure In progress
      SUSE Linux Enterprise High Performance Computing 15 SP5 kernel-zfcpdump Released
      SUSE Linux Enterprise High Performance Computing 15 SP6 kernel-64kb Released
      SUSE Linux Enterprise High Performance Computing 15 SP6 kernel-azure Released
      SUSE Linux Enterprise High Performance Computing 15 SP6 kernel-default Released
      SUSE Linux Enterprise High Performance Computing 15 SP6 kernel-default-base Released
      SUSE Linux Enterprise High Performance Computing 15 SP6 kernel-docs Released
      SUSE Linux Enterprise High Performance Computing 15 SP6 kernel-obs-build Released
      SUSE Linux Enterprise High Performance Computing 15 SP6 kernel-source Released
      SUSE Linux Enterprise High Performance Computing 15 SP6 kernel-source-azure Released
      SUSE Linux Enterprise High Performance Computing 15 SP6 kernel-syms Released
      SUSE Linux Enterprise High Performance Computing 15 SP6 kernel-syms-azure Released
      SUSE Linux Enterprise High Performance Computing 15 SP6 kernel-zfcpdump Released
      SUSE Linux Enterprise Live Patching 12 SP5 kernel-default Not affected
      SUSE Linux Enterprise Live Patching 12 SP5 kernel-source Not affected
      SUSE Linux Enterprise Live Patching 15 SP5 kernel-default Released
      SUSE Linux Enterprise Live Patching 15 SP5 kernel-livepatch-SLE15-SP5_Update_20 Released
      SUSE Linux Enterprise Live Patching 15 SP5 kernel-source Released
      SUSE Linux Enterprise Live Patching 15 SP6 kernel-default Released
      SUSE Linux Enterprise Live Patching 15 SP6 kernel-livepatch-SLE15-SP6-RT_Update_2 Released
      SUSE Linux Enterprise Live Patching 15 SP6 kernel-livepatch-SLE15-SP6_Update_4 Released
      SUSE Linux Enterprise Live Patching 15 SP6 kernel-source Released
      SUSE Linux Enterprise Micro 5.1 kernel-default Not affected
      SUSE Linux Enterprise Micro 5.1 kernel-rt Not affected
      SUSE Linux Enterprise Micro 5.1 kernel-source Not affected
      SUSE Linux Enterprise Micro 5.1 kernel-source-rt Not affected
      SUSE Linux Enterprise Micro 5.2 kernel-default Not affected
      SUSE Linux Enterprise Micro 5.2 kernel-rt Not affected
      SUSE Linux Enterprise Micro 5.2 kernel-source Not affected
      SUSE Linux Enterprise Micro 5.2 kernel-source-rt Not affected
      SUSE Linux Enterprise Micro 5.3 kernel-default Affected
      SUSE Linux Enterprise Micro 5.3 kernel-rt Affected
      SUSE Linux Enterprise Micro 5.3 kernel-source Affected
      SUSE Linux Enterprise Micro 5.3 kernel-source-rt Affected
      SUSE Linux Enterprise Micro 5.4 kernel-default Affected
      SUSE Linux Enterprise Micro 5.4 kernel-rt Affected
      SUSE Linux Enterprise Micro 5.4 kernel-source Affected
      SUSE Linux Enterprise Micro 5.4 kernel-source-rt Affected
      SUSE Linux Enterprise Micro 5.5 kernel-default Released
      SUSE Linux Enterprise Micro 5.5 kernel-default-base Released
      SUSE Linux Enterprise Micro 5.5 kernel-rt In progress
      SUSE Linux Enterprise Micro 5.5 kernel-source Affected
      SUSE Linux Enterprise Micro 5.5 kernel-source-rt In progress
      SUSE Linux Enterprise Micro 6.0 kernel-default Already fixed
      SUSE Linux Enterprise Micro 6.0 kernel-source Already fixed
      SUSE Linux Enterprise Micro 6.0 kernel-source-rt Already fixed
      SUSE Linux Enterprise Module for Basesystem 15 SP5 kernel-64kb Released
      SUSE Linux Enterprise Module for Basesystem 15 SP5 kernel-default Released
      SUSE Linux Enterprise Module for Basesystem 15 SP5 kernel-default-base Released
      SUSE Linux Enterprise Module for Basesystem 15 SP5 kernel-source Released
      SUSE Linux Enterprise Module for Basesystem 15 SP5 kernel-zfcpdump Released
      SUSE Linux Enterprise Module for Basesystem 15 SP6 kernel-64kb Released
      SUSE Linux Enterprise Module for Basesystem 15 SP6 kernel-default Released
      SUSE Linux Enterprise Module for Basesystem 15 SP6 kernel-default-base Released
      SUSE Linux Enterprise Module for Basesystem 15 SP6 kernel-source Released
      SUSE Linux Enterprise Module for Basesystem 15 SP6 kernel-zfcpdump Released
      SUSE Linux Enterprise Module for Development Tools 15 SP5 kernel-default Released
      SUSE Linux Enterprise Module for Development Tools 15 SP5 kernel-docs Released
      SUSE Linux Enterprise Module for Development Tools 15 SP5 kernel-obs-build Released
      SUSE Linux Enterprise Module for Development Tools 15 SP5 kernel-source Released
      SUSE Linux Enterprise Module for Development Tools 15 SP5 kernel-syms Released
      SUSE Linux Enterprise Module for Development Tools 15 SP6 kernel-default Released
      SUSE Linux Enterprise Module for Development Tools 15 SP6 kernel-docs Released
      SUSE Linux Enterprise Module for Development Tools 15 SP6 kernel-obs-build Released
      SUSE Linux Enterprise Module for Development Tools 15 SP6 kernel-source Released
      SUSE Linux Enterprise Module for Development Tools 15 SP6 kernel-syms Released
      SUSE Linux Enterprise Module for Legacy 15 SP5 kernel-default Released
      SUSE Linux Enterprise Module for Legacy 15 SP6 kernel-default Released
      SUSE Linux Enterprise Module for Public Cloud 15 SP5 kernel-azure In progress
      SUSE Linux Enterprise Module for Public Cloud 15 SP5 kernel-source-azure In progress
      SUSE Linux Enterprise Module for Public Cloud 15 SP5 kernel-syms-azure In progress
      SUSE Linux Enterprise Module for Public Cloud 15 SP6 kernel-azure Released
      SUSE Linux Enterprise Module for Public Cloud 15 SP6 kernel-source-azure Released
      SUSE Linux Enterprise Module for Public Cloud 15 SP6 kernel-syms-azure Released
      SUSE Linux Enterprise Real Time 12 SP5 kernel-source-rt Not affected
      SUSE Linux Enterprise Real Time 15 SP5 kernel-rt In progress
      SUSE Linux Enterprise Real Time 15 SP5 kernel-rt_debug In progress
      SUSE Linux Enterprise Real Time 15 SP5 kernel-source-rt In progress
      SUSE Linux Enterprise Real Time 15 SP5 kernel-syms-rt In progress
      SUSE Linux Enterprise Real Time 15 SP6 kernel-rt Released
      SUSE Linux Enterprise Real Time 15 SP6 kernel-rt_debug Released
      SUSE Linux Enterprise Real Time 15 SP6 kernel-source-rt Released
      SUSE Linux Enterprise Real Time 15 SP6 kernel-syms-rt Released
      SUSE Linux Enterprise Server 12 SP5 kernel-default Not affected
      SUSE Linux Enterprise Server 12 SP5 kernel-source Not affected
      SUSE Linux Enterprise Server 12 SP5 kernel-source-azure Not affected
      SUSE Linux Enterprise Server 12 SP5-LTSS kernel-source Not affected
      SUSE Linux Enterprise Server 12 SP5-LTSS kernel-source-azure Not affected
      SUSE Linux Enterprise Server 15 SP5 kernel-64kb Released
      SUSE Linux Enterprise Server 15 SP5 kernel-azure In progress
      SUSE Linux Enterprise Server 15 SP5 kernel-default Released
      SUSE Linux Enterprise Server 15 SP5 kernel-default-base Released
      SUSE Linux Enterprise Server 15 SP5 kernel-docs Released
      SUSE Linux Enterprise Server 15 SP5 kernel-obs-build Released
      SUSE Linux Enterprise Server 15 SP5 kernel-source Released
      SUSE Linux Enterprise Server 15 SP5 kernel-source-azure In progress
      SUSE Linux Enterprise Server 15 SP5 kernel-syms Released
      SUSE Linux Enterprise Server 15 SP5 kernel-syms-azure In progress
      SUSE Linux Enterprise Server 15 SP5 kernel-zfcpdump Released
      SUSE Linux Enterprise Server 15 SP6 kernel-64kb Released
      SUSE Linux Enterprise Server 15 SP6 kernel-azure Released
      SUSE Linux Enterprise Server 15 SP6 kernel-default Released
      SUSE Linux Enterprise Server 15 SP6 kernel-default-base Released
      SUSE Linux Enterprise Server 15 SP6 kernel-docs Released
      SUSE Linux Enterprise Server 15 SP6 kernel-obs-build Released
      SUSE Linux Enterprise Server 15 SP6 kernel-source Released
      SUSE Linux Enterprise Server 15 SP6 kernel-source-azure Released
      SUSE Linux Enterprise Server 15 SP6 kernel-syms Released
      SUSE Linux Enterprise Server 15 SP6 kernel-syms-azure Released
      SUSE Linux Enterprise Server 15 SP6 kernel-zfcpdump Released
      SUSE Linux Enterprise Server for SAP Applications 12 SP5 kernel-default Not affected
      SUSE Linux Enterprise Server for SAP Applications 12 SP5 kernel-source Not affected
      SUSE Linux Enterprise Server for SAP Applications 12 SP5 kernel-source-azure Not affected
      SUSE Linux Enterprise Server for SAP Applications 15 SP5 kernel-64kb Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP5 kernel-azure In progress
      SUSE Linux Enterprise Server for SAP Applications 15 SP5 kernel-default Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP5 kernel-default-base Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP5 kernel-docs Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP5 kernel-obs-build Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP5 kernel-source Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP5 kernel-source-azure In progress
      SUSE Linux Enterprise Server for SAP Applications 15 SP5 kernel-syms Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP5 kernel-syms-azure In progress
      SUSE Linux Enterprise Server for SAP Applications 15 SP5 kernel-zfcpdump Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-64kb Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-azure Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-default Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-default-base Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-docs Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-obs-build Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-source Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-source-azure Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-syms Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-syms-azure Released
      SUSE Linux Enterprise Server for SAP Applications 15 SP6 kernel-zfcpdump Released
      SUSE Linux Enterprise Software Development Kit 12 SP5 kernel-default Not affected
      SUSE Linux Enterprise Software Development Kit 12 SP5 kernel-source Not affected
      SUSE Linux Enterprise Workstation Extension 15 SP5 kernel-default Released
      SUSE Linux Enterprise Workstation Extension 15 SP6 kernel-default Released
      SUSE Manager Proxy 4.3 kernel-default Affected
      SUSE Manager Proxy 4.3 kernel-source Affected
      SUSE Manager Proxy 4.3 kernel-source-azure Affected
      SUSE Manager Retail Branch Server 4.3 kernel-default Affected
      SUSE Manager Retail Branch Server 4.3 kernel-source Affected
      SUSE Manager Retail Branch Server 4.3 kernel-source-azure Affected
      SUSE Manager Server 4.3 kernel-default Affected
      SUSE Manager Server 4.3 kernel-source Affected
      SUSE Manager Server 4.3 kernel-source-azure Affected
      SUSE Real Time Module 15 SP5 kernel-rt In progress
      SUSE Real Time Module 15 SP5 kernel-rt_debug In progress
      SUSE Real Time Module 15 SP5 kernel-source-rt In progress
      SUSE Real Time Module 15 SP5 kernel-syms-rt In progress
      SUSE Real Time Module 15 SP6 kernel-rt Released
      SUSE Real Time Module 15 SP6 kernel-rt_debug Released
      SUSE Real Time Module 15 SP6 kernel-source-rt Released
      SUSE Real Time Module 15 SP6 kernel-syms-rt Released
      openSUSE Leap 15.5 dtb-aarch64 Released
      openSUSE Leap 15.5 dtb-armv7l Released
      openSUSE Leap 15.5 kernel-64kb Released
      openSUSE Leap 15.5 kernel-debug Released
      openSUSE Leap 15.5 kernel-default Released
      openSUSE Leap 15.5 kernel-docs Released
      openSUSE Leap 15.5 kernel-kvmsmall Released
      openSUSE Leap 15.5 kernel-lpae Released
      openSUSE Leap 15.5 kernel-obs-build Released
      openSUSE Leap 15.5 kernel-obs-qa Released
      openSUSE Leap 15.5 kernel-source Released
      openSUSE Leap 15.5 kernel-source-azure Not affected
      openSUSE Leap 15.5 kernel-source-rt Analysis
      openSUSE Leap 15.5 kernel-syms Released
      openSUSE Leap 15.5 kernel-zfcpdump Released
      openSUSE Leap 15.6 kernel-default Released
      openSUSE Leap 15.6 kernel-source Released
      openSUSE Leap 15.6 kernel-source-azure Released
      openSUSE Leap 15.6 kernel-source-rt Released
      openSUSE Leap Micro 5.5 kernel-default Released
      Products under Long Term Service Pack support and receiving important and critical security fixes.
      SUSE Linux Enterprise Desktop 15 SP4 kernel-source Affected
      SUSE Linux Enterprise High Performance Computing 15 SP2 kernel-source Not affected
      SUSE Linux Enterprise High Performance Computing 15 SP2 kernel-source-azure Not affected
      SUSE Linux Enterprise High Performance Computing 15 SP2-ESPOS kernel-source Not affected
      SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS kernel-default Not affected
      SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS kernel-source Not affected
      SUSE Linux Enterprise High Performance Computing 15 SP3 kernel-source Not affected
      SUSE Linux Enterprise High Performance Computing 15 SP3 kernel-source-azure Not affected
      SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS kernel-source Not affected
      SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS kernel-default Not affected
      SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS kernel-source Not affected
      SUSE Linux Enterprise High Performance Computing 15 SP4 kernel-source Affected
      SUSE Linux Enterprise High Performance Computing 15 SP4 kernel-source-azure Affected
      SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS kernel-default Affected
      SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS kernel-source Affected
      SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS kernel-default Affected
      SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS kernel-source Affected
      SUSE Linux Enterprise Live Patching 15 SP2 kernel-default Not affected
      SUSE Linux Enterprise Live Patching 15 SP2 kernel-source Not affected
      SUSE Linux Enterprise Live Patching 15 SP4 kernel-default Affected
      SUSE Linux Enterprise Live Patching 15 SP4 kernel-source Affected
      SUSE Linux Enterprise Module for Basesystem 15 SP2 kernel-source Not affected
      SUSE Linux Enterprise Module for Basesystem 15 SP3 kernel-source Not affected
      SUSE Linux Enterprise Module for Basesystem 15 SP4 kernel-source Affected
      SUSE Linux Enterprise Module for Development Tools 15 SP2 kernel-source Not affected
      SUSE Linux Enterprise Module for Development Tools 15 SP3 kernel-source Not affected
      SUSE Linux Enterprise Module for Development Tools 15 SP4 kernel-source Affected
      SUSE Linux Enterprise Module for Public Cloud 15 SP4 kernel-source-azure Affected
      SUSE Linux Enterprise Server 11 SP4 LTSS EXTREME CORE kernel-default Not affected
      SUSE Linux Enterprise Server 11 SP4 LTSS EXTREME CORE kernel-source Not affected
      SUSE Linux Enterprise Server 15 SP2 kernel-source Not affected
      SUSE Linux Enterprise Server 15 SP2 kernel-source-azure Not affected
      SUSE Linux Enterprise Server 15 SP2-LTSS kernel-default Not affected
      SUSE Linux Enterprise Server 15 SP2-LTSS kernel-source Not affected
      SUSE Linux Enterprise Server 15 SP3 kernel-source Not affected
      SUSE Linux Enterprise Server 15 SP3 kernel-source-azure Not affected
      SUSE Linux Enterprise Server 15 SP3-LTSS kernel-default Not affected
      SUSE Linux Enterprise Server 15 SP3-LTSS kernel-source Not affected
      SUSE Linux Enterprise Server 15 SP4 kernel-source Affected
      SUSE Linux Enterprise Server 15 SP4 kernel-source-azure Affected
      SUSE Linux Enterprise Server 15 SP4-LTSS kernel-default Affected
      SUSE Linux Enterprise Server 15 SP4-LTSS kernel-source Affected
      SUSE Linux Enterprise Server for SAP Applications 15 SP2 kernel-default Not affected
      SUSE Linux Enterprise Server for SAP Applications 15 SP2 kernel-source Not affected
      SUSE Linux Enterprise Server for SAP Applications 15 SP2 kernel-source-azure Not affected
      SUSE Linux Enterprise Server for SAP Applications 15 SP3 kernel-default Not affected
      SUSE Linux Enterprise Server for SAP Applications 15 SP3 kernel-source Not affected
      SUSE Linux Enterprise Server for SAP Applications 15 SP3 kernel-source-azure Not affected
      SUSE Linux Enterprise Server for SAP Applications 15 SP4 kernel-default Affected
      SUSE Linux Enterprise Server for SAP Applications 15 SP4 kernel-source Affected
      SUSE Linux Enterprise Server for SAP Applications 15 SP4 kernel-source-azure Affected
      Products past their end of life and not receiving proactive updates anymore.
      HPE Helion OpenStack 8 kernel-source Not affected
      SUSE CaaS Platform 4.0 kernel-source Not affected
      SUSE CaaS Platform Toolchain 3 kernel-source Not affected
      SUSE Enterprise Storage 6 kernel-source Not affected
      SUSE Enterprise Storage 7 kernel-source Not affected
      SUSE Enterprise Storage 7 kernel-source-azure Not affected
      SUSE Enterprise Storage 7.1 kernel-default Not affected
      SUSE Enterprise Storage 7.1 kernel-source Not affected
      SUSE Enterprise Storage 7.1 kernel-source-azure Not affected
      SUSE Linux Enterprise Desktop 11 SP4 kernel-source Not affected
      SUSE Linux Enterprise Desktop 12 SP3 kernel-source Not affected
      SUSE Linux Enterprise Desktop 12 SP4 kernel-source Not affected
      SUSE Linux Enterprise Desktop 15 kernel-source Not affected
      SUSE Linux Enterprise Desktop 15 SP1 kernel-source Not affected
      SUSE Linux Enterprise Desktop 15 SP2 kernel-source Not affected
      SUSE Linux Enterprise Desktop 15 SP3 kernel-source Not affected
      SUSE Linux Enterprise High Performance Computing 15 kernel-source Not affected
      SUSE Linux Enterprise High Performance Computing 15 SP1 kernel-source Not affected
      SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS kernel-source Not affected
      SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS kernel-source Not affected
      SUSE Linux Enterprise High Performance Computing 15-ESPOS kernel-source Not affected
      SUSE Linux Enterprise High Performance Computing 15-LTSS kernel-source Not affected
      SUSE Linux Enterprise Micro 5.0 kernel-default Not affected
      SUSE Linux Enterprise Micro 5.0 kernel-rt Analysis
      SUSE Linux Enterprise Module for Basesystem 15 kernel-source Not affected
      SUSE Linux Enterprise Module for Basesystem 15 SP1 kernel-source Not affected
      SUSE Linux Enterprise Module for Development Tools 15 kernel-source Not affected
      SUSE Linux Enterprise Module for Development Tools 15 SP1 kernel-source Not affected
      SUSE Linux Enterprise Module for Public Cloud 15 SP2 kernel-source-azure Not affected
      SUSE Linux Enterprise Module for Public Cloud 15 SP3 kernel-source-azure Not affected
      SUSE Linux Enterprise Real Time 15 SP1 kernel-source-rt Analysis
      SUSE Linux Enterprise Real Time 15 SP2 kernel-source Not affected
      SUSE Linux Enterprise Real Time 15 SP3 kernel-source Not affected
      SUSE Linux Enterprise Real Time 15 SP3 kernel-source-rt Not affected
      SUSE Linux Enterprise Real Time 15 SP4 kernel-source Affected
      SUSE Linux Enterprise Real Time 15 SP4 kernel-source-rt Affected
      SUSE Linux Enterprise Server 11 SP4 kernel-source Not affected
      SUSE Linux Enterprise Server 11 SP4 LTSS kernel-default Not affected
      SUSE Linux Enterprise Server 11 SP4 LTSS kernel-source Not affected
      SUSE Linux Enterprise Server 11 SP4-LTSS kernel-source Not affected
      SUSE Linux Enterprise Server 12 SP3 kernel-source Not affected
      SUSE Linux Enterprise Server 12 SP3-BCL kernel-source Not affected
      SUSE Linux Enterprise Server 12 SP3-ESPOS kernel-source Not affected
      SUSE Linux Enterprise Server 12 SP3-LTSS kernel-source Not affected
      SUSE Linux Enterprise Server 12 SP4 kernel-source Not affected
      SUSE Linux Enterprise Server 12 SP4-ESPOS kernel-source Not affected
      SUSE Linux Enterprise Server 12 SP4-LTSS kernel-default Not affected
      SUSE Linux Enterprise Server 12 SP4-LTSS kernel-source Not affected
      SUSE Linux Enterprise Server 15 kernel-source Not affected
      SUSE Linux Enterprise Server 15 SP1 kernel-source Not affected
      SUSE Linux Enterprise Server 15 SP1-BCL kernel-source Not affected
      SUSE Linux Enterprise Server 15 SP1-LTSS kernel-default Not affected
      SUSE Linux Enterprise Server 15 SP1-LTSS kernel-source Not affected
      SUSE Linux Enterprise Server 15 SP2-BCL kernel-source Not affected
      SUSE Linux Enterprise Server 15 SP3-BCL kernel-source Not affected
      SUSE Linux Enterprise Server 15-LTSS kernel-default Not affected
      SUSE Linux Enterprise Server 15-LTSS kernel-source Not affected
      SUSE Linux Enterprise Server for SAP Applications 12 SP3 kernel-source Not affected
      SUSE Linux Enterprise Server for SAP Applications 12 SP4 kernel-default Not affected
      SUSE Linux Enterprise Server for SAP Applications 12 SP4 kernel-source Not affected
      SUSE Linux Enterprise Server for SAP Applications 15 kernel-source Not affected
      SUSE Linux Enterprise Server for SAP Applications 15 SP1 kernel-source Not affected
      SUSE Manager Proxy 4.0 kernel-source Not affected
      SUSE Manager Proxy 4.1 kernel-source Not affected
      SUSE Manager Proxy 4.1 kernel-source-azure Not affected
      SUSE Manager Proxy 4.2 kernel-source Not affected
      SUSE Manager Proxy 4.2 kernel-source-azure Not affected
      SUSE Manager Retail Branch Server 4.0 kernel-source Not affected
      SUSE Manager Retail Branch Server 4.1 kernel-source Not affected
      SUSE Manager Retail Branch Server 4.1 kernel-source-azure Not affected
      SUSE Manager Retail Branch Server 4.2 kernel-source Not affected
      SUSE Manager Retail Branch Server 4.2 kernel-source-azure Not affected
      SUSE Manager Server 4.0 kernel-source Not affected
      SUSE Manager Server 4.1 kernel-source Not affected
      SUSE Manager Server 4.1 kernel-source-azure Not affected
      SUSE Manager Server 4.2 kernel-source Not affected
      SUSE Manager Server 4.2 kernel-source-azure Not affected
      SUSE OpenStack Cloud 8 kernel-source Not affected
      SUSE OpenStack Cloud 9 kernel-default Not affected
      SUSE OpenStack Cloud 9 kernel-source Not affected
      SUSE OpenStack Cloud Crowbar 8 kernel-source Not affected
      SUSE OpenStack Cloud Crowbar 9 kernel-default Not affected
      SUSE OpenStack Cloud Crowbar 9 kernel-source Not affected
      SUSE Real Time Module 15 SP1 kernel-source-rt Analysis
      SUSE Real Time Module 15 SP3 kernel-source-rt Not affected
      SUSE Real Time Module 15 SP4 kernel-source-rt Affected
      openSUSE Leap 15.3 kernel-source Not affected
      openSUSE Leap 15.3 kernel-source-azure Not affected
      openSUSE Leap 15.3 kernel-source-rt Not affected
      openSUSE Leap 15.4 kernel-source Affected
      openSUSE Leap 15.4 kernel-source-azure Affected
      openSUSE Leap 15.4 kernel-source-rt Affected
      Products at an unknown state of their lifecycle.
      SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security kernel-source Not affected
      SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security kernel-source-azure Not affected
      Container Status
      suse/hpc/warewulf4-x86_64/sle-hpc-node kernel-defaultReleased
      suse/sles/15.5/libguestfs-tools:0.58.0 kernel-kvmsmallIn progress
      bci/bci-sle15-kernel-module-devel:15.5 kernel-symsIn progress


      SUSE Timeline for this CVE

      CVE page created: Wed Apr 17 14:00:54 2024
      CVE page last modified: Wed Oct 9 19:52:59 2024