SUSE SLES15: cluster-md-kmp-rt / dlm-kmp-rt / gfs2-kmp-rt / kernel-devel-rt / etc (SUSE-SU-2024:0115-1)

high Nessus Plugin ID 189102

Language:

Synopsis

The remote SUSE host is missing one or more security updates.

Description

The remote SUSE Linux SLES15 / openSUSE 15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2024:0115-1 advisory.

The SUSE Linux Enterprise 15 SP5 RT kernel was updated to receive various security and bugfixes.


The following security bugs were fixed:

- CVE-2023-6531: Fixed a use-after-free flaw due to a race problem in the unix garbage collector's deletion of SKB races with unix_stream_read_generic()on the socket that the SKB is queued on (bsc#1218447).
- CVE-2023-6610: Fixed an out of bounds read in the SMB client when printing debug information (bsc#1217946).
- CVE-2023-51779: Fixed a use-after-free because of a bt_sock_ioctl race condition in bt_sock_recvmsg (bsc#1218559).
- CVE-2020-26555: Fixed Bluetooth legacy BR/EDR PIN code pairing in Bluetooth Core Specification 1.0B that may permit an unauthenticated nearby device to spoof the BD_ADDR of the peer device to complete pairing without knowledge of the PIN (bsc#1179610 bsc#1215237).
- CVE-2023-6606: Fixed an out of bounds read in the SMB client when receiving a malformed length from a server (bsc#1217947).
- CVE-2023-6546: Fixed a race condition in the GSM 0710 tty multiplexor via the GSMIOC_SETCONF ioctl that could lead to local privilege escalation (bsc#1218335).
- CVE-2023-6931: Fixed a heap out-of-bounds write vulnerability in the Linux kernel's Performance Events system component that could lead to local privilege escalation. (bsc#1218258).
- CVE-2023-6932: Fixed a use-after-free vulnerability in the Linux kernel's ipv4: igmp component that could lead to local privilege escalation (bsc#1218253).
- CVE-2023-6622: Fixed a null pointer dereference vulnerability in nft_dynset_init() that could allow a local attacker with CAP_NET_ADMIN user privilege to trigger a denial of service (bsc#1217938).
- CVE-2023-6121: Fixed an out-of-bounds read vulnerability in the NVMe-oF/TCP subsystem that could lead to information leak (bsc#1217250).


Tenable has extracted the preceding description block directly from the SUSE security advisory.

Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.

Solution

Update the affected packages.

See Also

https://bugzilla.suse.com/1179610

https://bugzilla.suse.com/1183045

https://bugzilla.suse.com/1211162

https://bugzilla.suse.com/1211226

https://bugzilla.suse.com/1212139

https://bugzilla.suse.com/1212584

https://bugzilla.suse.com/1214117

https://bugzilla.suse.com/1214747

https://bugzilla.suse.com/1214823

https://bugzilla.suse.com/1215237

https://bugzilla.suse.com/1215696

https://bugzilla.suse.com/1215885

https://bugzilla.suse.com/1215952

https://bugzilla.suse.com/1216032

https://bugzilla.suse.com/1216057

https://bugzilla.suse.com/1216559

https://bugzilla.suse.com/1216776

https://bugzilla.suse.com/1217036

https://bugzilla.suse.com/1217217

https://bugzilla.suse.com/1217250

https://bugzilla.suse.com/1217602

https://bugzilla.suse.com/1217692

https://bugzilla.suse.com/1217790

https://bugzilla.suse.com/1217801

https://bugzilla.suse.com/1217822

https://bugzilla.suse.com/1217927

https://bugzilla.suse.com/1217933

https://bugzilla.suse.com/1217938

https://bugzilla.suse.com/1217946

https://bugzilla.suse.com/1217947

https://bugzilla.suse.com/1217980

https://bugzilla.suse.com/1217981

https://bugzilla.suse.com/1217982

https://bugzilla.suse.com/1218056

https://bugzilla.suse.com/1218092

https://bugzilla.suse.com/1218139

https://bugzilla.suse.com/1218184

https://bugzilla.suse.com/1218229

https://bugzilla.suse.com/1218234

https://bugzilla.suse.com/1218253

https://bugzilla.suse.com/1218258

https://bugzilla.suse.com/1218335

https://bugzilla.suse.com/1218357

https://bugzilla.suse.com/1218397

https://bugzilla.suse.com/1218447

https://bugzilla.suse.com/1218461

https://bugzilla.suse.com/1218515

https://bugzilla.suse.com/1218559

https://bugzilla.suse.com/1218569

https://bugzilla.suse.com/1218643

https://www.suse.com/security/cve/CVE-2020-26555

https://www.suse.com/security/cve/CVE-2023-51779

https://www.suse.com/security/cve/CVE-2023-6121

https://www.suse.com/security/cve/CVE-2023-6531

https://www.suse.com/security/cve/CVE-2023-6546

https://www.suse.com/security/cve/CVE-2023-6606

https://www.suse.com/security/cve/CVE-2023-6610

https://www.suse.com/security/cve/CVE-2023-6622

https://www.suse.com/security/cve/CVE-2023-6931

https://www.suse.com/security/cve/CVE-2023-6932

http://www.nessus.org/u?cce24b4b

Plugin Details

Severity: High

ID: 189102

File Name: suse_SU-2024-0115-1.nasl

Version: 1.5

Type: Local

Agent: unix

Published: 1/17/2024

Updated: 6/25/2026

Supported Sensors: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Agentless Assessment, Continuous Assessment, Tenable Cloud Security, Tenable Self-Hosted Container Security, Nessus

Risk Information

VPR

Risk Factor: High

Score: 7.6

Percentile: 98.58

CVSS v2

Risk Factor: Medium

Base Score: 4.8

Temporal Score: 4.2

Vector: CVSS2#AV:A/AC:L/Au:N/C:P/I:P/A:N

CVSS Score Source: CVE-2020-26555

CVSS v3

Risk Factor: High

Base Score: 7.1

Temporal Score: 6.8

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H

Temporal Vector: CVSS:3.0/E:H/RL:O/RC:C

CVSS Score Source: CVE-2023-6610

Vulnerability Information

CPE: p-cpe:/a:novell:suse_linux:kernel-livepatch-5_14_21-150500_13_30-rt, cpe:/o:novell:suse_linux:15

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 1/16/2024

Vulnerability Publication Date: 5/24/2021

Exploitable With

Core Impact

Reference Information

CVE: CVE-2020-26555, CVE-2023-51779, CVE-2023-6121, CVE-2023-6531, CVE-2023-6546, CVE-2023-6606, CVE-2023-6610, CVE-2023-6622, CVE-2023-6931, CVE-2023-6932

SuSE: SUSE-SU-2024:0115-1