{"affected":[{"ecosystem_specific":{"binaries":[{"kernel-64kb":"5.3.18-59.13.1","kernel-64kb-devel":"5.3.18-59.13.1","kernel-default":"5.3.18-59.13.1","kernel-default-base":"5.3.18-59.13.1.18.6.1","kernel-default-devel":"5.3.18-59.13.1","kernel-devel":"5.3.18-59.13.1","kernel-macros":"5.3.18-59.13.1","kernel-preempt":"5.3.18-59.13.1","kernel-zfcpdump":"5.3.18-59.13.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Module for Basesystem 15 SP3","name":"kernel-64kb","purl":"pkg:rpm/suse/kernel-64kb&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.3.18-59.13.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"kernel-64kb":"5.3.18-59.13.1","kernel-64kb-devel":"5.3.18-59.13.1","kernel-default":"5.3.18-59.13.1","kernel-default-base":"5.3.18-59.13.1.18.6.1","kernel-default-devel":"5.3.18-59.13.1","kernel-devel":"5.3.18-59.13.1","kernel-macros":"5.3.18-59.13.1","kernel-preempt":"5.3.18-59.13.1","kernel-zfcpdump":"5.3.18-59.13.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Module for Basesystem 15 SP3","name":"kernel-default","purl":"pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.3.18-59.13.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"kernel-64kb":"5.3.18-59.13.1","kernel-64kb-devel":"5.3.18-59.13.1","kernel-default":"5.3.18-59.13.1","kernel-default-base":"5.3.18-59.13.1.18.6.1","kernel-default-devel":"5.3.18-59.13.1","kernel-devel":"5.3.18-59.13.1","kernel-macros":"5.3.18-59.13.1","kernel-preempt":"5.3.18-59.13.1","kernel-zfcpdump":"5.3.18-59.13.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Module for Basesystem 15 SP3","name":"kernel-default-base","purl":"pkg:rpm/suse/kernel-default-base&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.3.18-59.13.1.18.6.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"kernel-64kb":"5.3.18-59.13.1","kernel-64kb-devel":"5.3.18-59.13.1","kernel-default":"5.3.18-59.13.1","kernel-default-base":"5.3.18-59.13.1.18.6.1","kernel-default-devel":"5.3.18-59.13.1","kernel-devel":"5.3.18-59.13.1","kernel-macros":"5.3.18-59.13.1","kernel-preempt":"5.3.18-59.13.1","kernel-zfcpdump":"5.3.18-59.13.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Module for Basesystem 15 SP3","name":"kernel-preempt","purl":"pkg:rpm/suse/kernel-preempt&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.3.18-59.13.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"kernel-64kb":"5.3.18-59.13.1","kernel-64kb-devel":"5.3.18-59.13.1","kernel-default":"5.3.18-59.13.1","kernel-default-base":"5.3.18-59.13.1.18.6.1","kernel-default-devel":"5.3.18-59.13.1","kernel-devel":"5.3.18-59.13.1","kernel-macros":"5.3.18-59.13.1","kernel-preempt":"5.3.18-59.13.1","kernel-zfcpdump":"5.3.18-59.13.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Module for Basesystem 15 SP3","name":"kernel-source","purl":"pkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.3.18-59.13.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"kernel-64kb":"5.3.18-59.13.1","kernel-64kb-devel":"5.3.18-59.13.1","kernel-default":"5.3.18-59.13.1","kernel-default-base":"5.3.18-59.13.1.18.6.1","kernel-default-devel":"5.3.18-59.13.1","kernel-devel":"5.3.18-59.13.1","kernel-macros":"5.3.18-59.13.1","kernel-preempt":"5.3.18-59.13.1","kernel-zfcpdump":"5.3.18-59.13.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Module for Basesystem 15 SP3","name":"kernel-zfcpdump","purl":"pkg:rpm/suse/kernel-zfcpdump&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.3.18-59.13.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"kernel-docs":"5.3.18-59.13.1","kernel-obs-build":"5.3.18-59.13.1","kernel-preempt-devel":"5.3.18-59.13.1","kernel-source":"5.3.18-59.13.1","kernel-syms":"5.3.18-59.13.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Module for Development Tools 15 SP3","name":"kernel-docs","purl":"pkg:rpm/suse/kernel-docs&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Development%20Tools%2015%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.3.18-59.13.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"kernel-docs":"5.3.18-59.13.1","kernel-obs-build":"5.3.18-59.13.1","kernel-preempt-devel":"5.3.18-59.13.1","kernel-source":"5.3.18-59.13.1","kernel-syms":"5.3.18-59.13.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Module for Development Tools 15 SP3","name":"kernel-obs-build","purl":"pkg:rpm/suse/kernel-obs-build&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Development%20Tools%2015%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.3.18-59.13.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"kernel-docs":"5.3.18-59.13.1","kernel-obs-build":"5.3.18-59.13.1","kernel-preempt-devel":"5.3.18-59.13.1","kernel-source":"5.3.18-59.13.1","kernel-syms":"5.3.18-59.13.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Module for Development Tools 15 SP3","name":"kernel-preempt","purl":"pkg:rpm/suse/kernel-preempt&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Development%20Tools%2015%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.3.18-59.13.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"kernel-docs":"5.3.18-59.13.1","kernel-obs-build":"5.3.18-59.13.1","kernel-preempt-devel":"5.3.18-59.13.1","kernel-source":"5.3.18-59.13.1","kernel-syms":"5.3.18-59.13.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Module for Development Tools 15 SP3","name":"kernel-source","purl":"pkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Development%20Tools%2015%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.3.18-59.13.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"kernel-docs":"5.3.18-59.13.1","kernel-obs-build":"5.3.18-59.13.1","kernel-preempt-devel":"5.3.18-59.13.1","kernel-source":"5.3.18-59.13.1","kernel-syms":"5.3.18-59.13.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Module for Development Tools 15 SP3","name":"kernel-syms","purl":"pkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Development%20Tools%2015%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.3.18-59.13.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"reiserfs-kmp-default":"5.3.18-59.13.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Module for Legacy 15 SP3","name":"kernel-default","purl":"pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Legacy%2015%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.3.18-59.13.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"kernel-default-livepatch":"5.3.18-59.13.1","kernel-default-livepatch-devel":"5.3.18-59.13.1","kernel-livepatch-5_3_18-59_13-default":"1-7.3.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Live Patching 15 SP3","name":"kernel-default","purl":"pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Live%20Patching%2015%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.3.18-59.13.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"kernel-default-livepatch":"5.3.18-59.13.1","kernel-default-livepatch-devel":"5.3.18-59.13.1","kernel-livepatch-5_3_18-59_13-default":"1-7.3.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Live Patching 15 SP3","name":"kernel-livepatch-SLE15-SP3_Update_3","purl":"pkg:rpm/suse/kernel-livepatch-SLE15-SP3_Update_3&distro=SUSE%20Linux%20Enterprise%20Live%20Patching%2015%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1-7.3.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"cluster-md-kmp-default":"5.3.18-59.13.1","dlm-kmp-default":"5.3.18-59.13.1","gfs2-kmp-default":"5.3.18-59.13.1","ocfs2-kmp-default":"5.3.18-59.13.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise High Availability Extension 15 SP3","name":"kernel-default","purl":"pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20High%20Availability%20Extension%2015%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.3.18-59.13.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"kernel-default-extra":"5.3.18-59.13.1","kernel-preempt-extra":"5.3.18-59.13.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Workstation Extension 15 SP3","name":"kernel-default","purl":"pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2015%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.3.18-59.13.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"kernel-default-extra":"5.3.18-59.13.1","kernel-preempt-extra":"5.3.18-59.13.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Workstation Extension 15 SP3","name":"kernel-preempt","purl":"pkg:rpm/suse/kernel-preempt&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2015%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.3.18-59.13.1"}],"type":"ECOSYSTEM"}]}],"aliases":[],"details":"The SUSE Linux Enterprise 15 SP3 kernel was updated to receive various security and bugfixes.\n\nThe following security bugs were fixed:\n\n- CVE-2021-3573: Fixed an UAF vulnerability in function that can allow attackers to corrupt kernel heaps and adopt further exploitations. (bsc#1186666)\n- CVE-2021-0605: Fixed an out-of-bounds read which could lead to local information disclosure in the kernel with System execution privileges needed. (bsc#1187601)\n- CVE-2021-0512: Fixed a possible out-of-bounds write which could lead to local escalation of privilege with no additional execution privileges needed. (bsc#1187595)\n- CVE-2021-33624: Fixed a bug which allows unprivileged BPF program to leak the contents of arbitrary kernel memory (and therefore, of all physical memory) via a side-channel. (bsc#1187554)\n- CVE-2021-34693: Fixed a bug in net/can/bcm.c which could allow local users to obtain sensitive information from kernel stack memory because parts of a data structure are uninitialized. (bsc#1187452)\n\nThe following non-security bugs were fixed:\n\n- 0001-x86-sched-Treat-Intel-SNC-topology-as-default-COD-as.patch: (bsc#1187263).\n- alx: Fix an error handling path in 'alx_probe()' (git-fixes).\n- ASoC: fsl-asoc-card: Set .owner attribute when registering card (git-fixes).\n- ASoC: Intel: bytcr_rt5640: Add quirk for the Glavey TM800A550L tablet (git-fixes).\n- ASoC: Intel: bytcr_rt5640: Add quirk for the Lenovo Miix 3-830 tablet (git-fixes).\n- ASoC: max98088: fix ni clock divider calculation (git-fixes).\n- ASoC: rt5659: Fix the lost powers for the HDA header (git-fixes).\n- ASoC: rt5682: Fix the fast discharge for headset unplugging in soundwire mode (git-fixes).\n- ASoC: sti-sas: add missing MODULE_DEVICE_TABLE (git-fixes).\n- ASoC: tas2562: Fix TDM_CFG0_SAMPRATE values (git-fixes).\n- batman-adv: Avoid WARN_ON timing related checks (git-fixes).\n- be2net: Fix an error handling path in 'be_probe()' (git-fixes).\n- block: Discard page cache of zone reset target range (bsc#1187402).\n- Bluetooth: Add a new USB ID for RTL8822CE (git-fixes).\n- Bluetooth: use correct lock to prevent UAF of hdev object (git-fixes).\n- bnxt_en: Call bnxt_ethtool_free() in bnxt_init_one() error path (jsc#SLE-8371 bsc#1153274).\n- bnxt_en: Fix TQM fastpath ring backing store computation (jsc#SLE-8371 bsc#1153274).\n- bnxt_en: Rediscover PHY capabilities after firmware reset (jsc#SLE-8371 bsc#1153274).\n- bpf: Fix integer overflow in argument calculation for bpf_map_area_alloc (bsc#1177028).\n- bpf: Fix libelf endian handling in resolv_btfids (bsc#1177028).\n- bpfilter: Specify the log level for the kmsg message (bsc#1155518).\n- can: mcba_usb: fix memory leak in mcba_usb (git-fixes).\n- ceph: must hold snap_rwsem when filling inode for async create (bsc#1187927).\n- cfg80211: avoid double free of PMSR request (git-fixes).\n- cfg80211: make certificate generation more robust (git-fixes).\n- cgroup1: do not allow '\\n' in renaming (bsc#1187972).\n- cxgb4: fix endianness when flashing boot image (jsc#SLE-15131).\n- cxgb4: fix sleep in atomic when flashing PHY firmware (jsc#SLE-15131).\n- cxgb4: fix wrong ethtool n-tuple rule lookup (jsc#SLE-15131).\n- cxgb4: fix wrong shift (git-fixes).\n- cxgb4: halt chip before flashing PHY firmware image (jsc#SLE-15131).\n- dax: Add a wakeup mode parameter to put_unlocked_entry() (bsc#1187411).\n- dax: Add an enum for specifying dax wakup mode (bsc#1187411).\n- dax: fix ENOMEM handling in grab_mapping_entry() (bsc#1184212).\n- dax: Wake up all waiters after invalidating dax entry (bsc#1187411).\n- dmaengine: ALTERA_MSGDMA depends on HAS_IOMEM (git-fixes).\n- dmaengine: fsl-dpaa2-qdma: Fix error return code in two functions (git-fixes).\n- dmaengine: pl330: fix wrong usage of spinlock flags in dma_cyclc (git-fixes).\n- dmaengine: QCOM_HIDMA_MGMT depends on HAS_IOMEM (git-fixes).\n- dmaengine: stedma40: add missing iounmap() on error in d40_probe() (git-fixes).\n- drm: Fix use-after-free read in drm_getunique() (git-fixes).\n- drm: Lock pointer access in drm_master_release() (git-fixes).\n- drm/amd/amdgpu:save psp ring wptr to avoid attack (git-fixes).\n- drm/amd/display: Allow bandwidth validation for 0 streams (git-fixes).\n- drm/amd/display: Fix potential memory leak in DMUB hw_init (git-fixes).\n- drm/amdgpu: refine amdgpu_fru_get_product_info (git-fixes).\n- drm/sun4i: dw-hdmi: Make HDMI PHY into a platform device (git-fixes).\n- drm/tegra: sor: Do not leak runtime PM reference (git-fixes).\n- drm/vc4: hdmi: Make sure the controller is powered in detect (git-fixes).\n- drm/vc4: hdmi: Move the HSM clock enable to runtime_pm (git-fixes).\n- dt-bindings: reset: meson8b: fix duplicate reset IDs (git-fixes).\n- ethtool: strset: fix message length calculation (bsc#1176447).\n- ext4: fix bug on in ext4_es_cache_extent as ext4_split_extent_at failed (bsc#1187408).\n- ext4: fix check to prevent false positive report of incorrect used inodes (bsc#1187404).\n- ext4: fix error code in ext4_commit_super (bsc#1187407).\n- ext4: fix memory leak in ext4_fill_super (bsc#1187409).\n- FCOE: fcoe_wwn_from_mac kABI fix (bsc#1187886).\n- fs: fix reporting supported extra file attributes for statx() (bsc#1187410).\n- ftrace: Do not blindly read the ip address in ftrace_bug() (git-fixes).\n- ftrace: Free the trampoline when ftrace_startup() fails (git-fixes).\n- fuse: BUG_ON correction in fuse_dev_splice_write() (bsc#1187356).\n- HID: Add BUS_VIRTUAL to hid_connect logging (git-fixes).\n- HID: gt683r: add missing MODULE_DEVICE_TABLE (git-fixes).\n- HID: hid-input: add mapping for emoji picker key (git-fixes).\n- HID: hid-sensor-hub: Return error for hid_set_field() failure (git-fixes).\n- HID: quirks: Set INCREMENT_USAGE_ON_DUPLICATE for Saitek X65 (git-fixes).\n- HID: usbhid: fix info leak in hid_submit_ctrl (git-fixes).\n- HID: usbhid: Fix race between usbhid_close() and usbhid_stop() (git-fixes).\n- hwmon: (scpi-hwmon) shows the negative temperature properly (git-fixes).\n- i2c: mpc: Make use of i2c_recover_bus() (git-fixes).\n- ice: add ndo_bpf callback for safe mode netdev ops (jsc#SLE-7926).\n- ice: parameterize functions responsible for Tx ring management (jsc#SLE-12878).\n- isdn: mISDN: netjet: Fix crash in nj_probe: (git-fixes).\n- kernel-binary.spec.in: Regenerate makefile when not using mkmakefile.\n- kernel: kexec_file: fix error return code of kexec_calculate_store_digests() (git-fixes).\n- kthread_worker: split code for canceling the delayed work timer (bsc#1187867).\n- kthread: prevent deadlock when kthread_mod_delayed_work() races with kthread_cancel_delayed_work_sync() (bsc#1187867).\n- kyber: fix out of bounds access when preempted (bsc#1187403).\n- lib: vdso: Remove CROSS_COMPILE_COMPAT_VDSO (bsc#1164648,jsc#SLE-11493).\n- media: mtk-mdp: Check return value of of_clk_get (git-fixes).\n- media: mtk-mdp: Fix a refcounting bug on error in init (git-fixes).\n- media: s5p-g2d: Fix a memory leak in an error handling path in 'g2d_probe()' (git-fixes).\n- mlxsw: reg: Spectrum-3: Enforce lowest max-shaper burst size of 11 (bsc#1176774).\n- mmc: meson-gx: use memcpy_to/fromio for dram-access-quirk (git-fixes).\n- module: limit enabling module.sig_enforce (git-fixes).\n- net: mvpp2: add mvpp2_phylink_to_port() helper (bsc#1187171).\n- net/mlx5: Consider RoCE cap before init RDMA resources (git-fixes).\n- net/mlx5: E-Switch, Allow setting GUID for host PF vport (jsc#SLE-15172).\n- net/mlx5: E-Switch, Read PF mac address (jsc#SLE-15172).\n- net/mlx5: Fix PBMC register mapping (git-fixes).\n- net/mlx5: Fix placement of log_max_flow_counter (git-fixes).\n- net/mlx5: Fix sleep while atomic in mlx5_eswitch_get_vepa (git-fixes).\n- net/mlx5: Reset mkey index on creation (jsc#SLE-15172).\n- net/mlx5e: Block offload of outer header csum for UDP tunnels (git-fixes).\n- net/mlx5e: Fix page reclaim for dead peer hairpin (git-fixes).\n- net/mlx5e: Remove dependency in IPsec initialization flows (git-fixes).\n- net/nfc/rawsock.c: fix a permission check bug (git-fixes).\n- net/sched: act_ct: handle DNAT tuple collision (bsc#1154353).\n- net/x25: Return the correct errno code (git-fixes).\n- netxen_nic: Fix an error handling path in 'netxen_nic_probe()' (git-fixes).\n- NFS: Fix a potential NULL dereference in nfs_get_client() (git-fixes).\n- NFS: Fix use-after-free in nfs4_init_client() (git-fixes).\n- NFS: Fix deadlock between nfs4_evict_inode() and nfs4_opendata_get_inode() (git-fixes).\n- nvmem: rmem: fix undefined reference to memremap (git-fixes).\n- ocfs2: fix data corruption by fallocate (bsc#1187412).\n- PCI: aardvark: Do not rely on jiffies while holding spinlock (git-fixes).\n- PCI: aardvark: Fix kernel panic during PIO transfer (git-fixes).\n- PCI: Add ACS quirk for Broadcom BCM57414 NIC (git-fixes).\n- PCI: Mark some NVIDIA GPUs to avoid bus reset (git-fixes).\n- PCI: Mark TI C667X to avoid bus reset (git-fixes).\n- PCI: Work around Huawei Intelligent NIC VF FLR erratum (git-fixes).\n- perf/x86/intel/uncore: Fix a kernel WARNING triggered by maxcpus=1 (git-fixes).\n- perf/x86/intel/uncore: Remove uncore extra PCI dev HSWEP_PCI_PCU_3 (bsc#1184685).\n- powerpc/perf: Fix crash in perf_instruction_pointer() when ppmu is not set (jsc#SLE-13513 bsc#1176919 ltc#186162 git-fixes).\n- qla2xxx: synchronize rport dev_loss_tmo setting (bsc#1182470 bsc#1185486).\n- qlcnic: Fix an error handling path in 'qlcnic_probe()' (git-fixes).\n- radeon: use memcpy_to/fromio for UVD fw upload (git-fixes).\n- regulator: bd70528: Fix off-by-one for buck123 .n_voltages setting (git-fixes).\n- Removed patch that was incorrectly added to SLE15-SP2 (bsc#1186949)\n- Revert 'ecryptfs: replace BUG_ON with error handling code' (bsc#1187413).\n- Revert 'ibmvnic: simplify reset_long_term_buff function' (bsc#1186206 ltc#191041).\n- Revert 'PCI: PM: Do not read power state in pci_enable_device_flags()' (git-fixes).\n- Revert 'video: hgafb: fix potential NULL pointer dereference' (git-fixes).\n- Revert 'video: imsttfb: fix potential NULL pointer dereferences' (bsc#1152489)\n- s390/dasd: add missing discipline function (git-fixes).\n- s390/stack: fix possible register corruption with stack switch helper (bsc#1185677).\n- sched/debug: Fix cgroup_path[] serialization (git-fixes)\n- sched/fair: Keep load_avg and load_sum synced (git-fixes)\n- scsi: core: Fix race between handling STS_RESOURCE and completion (bsc#1187883).\n- scsi: fcoe: Fix mismatched fcoe_wwn_from_mac declaration (bsc#1187886).\n- scsi: ufs: Fix imprecise load calculation in devfreq window (bsc#1187795).\n- SCSI: ufs: fix ktime_t kabi change (bsc#1187795).\n- scsi: ufs: ufshcd-pltfrm depends on HAS_IOMEM (bsc#1187980).\n- spi: spi-nxp-fspi: move the register operation after the clock enable (git-fixes).\n- spi: sprd: Add missing MODULE_DEVICE_TABLE (git-fixes).\n- spi: stm32-qspi: Always wait BUSY bit to be cleared in stm32_qspi_wait_cmd() (git-fixes).\n- SUNRPC: Handle major timeout in xprt_adjust_timeout() (git-fixes).\n- SUNRPC: Handle major timeout in xprt_adjust_timeout() (git-fixes).\n- tracing: Correct the length check which causes memory corruption (git-fixes).\n- tracing: Do no increment trace_clock_global() by one (git-fixes).\n- tracing: Do not stop recording cmdlines when tracing is off (git-fixes).\n- tracing: Do not stop recording comms if the trace file is being read (git-fixes).\n- tracing: Restructure trace_clock_global() to never block (git-fixes).\n- USB: core: hub: Disable autosuspend for Cypress CY7C65632 (git-fixes).\n- USB: dwc3: core: fix kernel panic when do reboot (git-fixes).\n- USB: dwc3: core: fix kernel panic when do reboot (git-fixes).\n- USB: dwc3: debugfs: Add and remove endpoint dirs dynamically (git-fixes).\n- USB: dwc3: ep0: fix NULL pointer exception (git-fixes).\n- USB: f_ncm: only first packet of aggregate needs to start timer (git-fixes).\n- USB: f_ncm: only first packet of aggregate needs to start timer (git-fixes).\n- USB: fix various gadget panics on 10gbps cabling (git-fixes).\n- USB: fix various gadget panics on 10gbps cabling (git-fixes).\n- USB: gadget: eem: fix wrong eem header operation (git-fixes).\n- USB: gadget: eem: fix wrong eem header operation (git-fixes).\n- USB: gadget: f_fs: Ensure io_completion_wq is idle during unbind (git-fixes).\n- USB: gadget: f_fs: Ensure io_completion_wq is idle during unbind (git-fixes).\n- USB: serial: ftdi_sio: add NovaTech OrionMX product ID (git-fixes).\n- USB: serial: ftdi_sio: add NovaTech OrionMX product ID (git-fixes).\n- USB: serial: omninet: add device id for Zyxel Omni 56K Plus (git-fixes).\n- USB: serial: omninet: add device id for Zyxel Omni 56K Plus (git-fixes).\n- video: hgafb: correctly handle card detect failure during probe (git-fixes).\n- video: hgafb: fix potential NULL pointer dereference (git-fixes).\n- vrf: fix maximum MTU (git-fixes).\n- x86/elf: Use _BITUL() macro in UAPI headers (bsc#1178134).\n- x86/fpu: Preserve supervisor states in sanitize_restored_user_xstate() (bsc#1178134).\n- x86/pkru: Write hardware init value to PKRU when xstate is init (bsc#1152489).\n- x86/process: Check PF_KTHREAD and not current->mm for kernel threads (bsc#1152489).\n- xen-blkback: fix compatibility bug with single page rings (git-fixes).\n- xen-pciback: reconfigure also from backend watch handler (git-fixes).\n- xen-pciback: redo VF placement in the virtual topology (git-fixes).\n- xen/evtchn: Change irq_info lock to raw_spinlock_t (git-fixes).\n- xfrm: policy: Read seqcount outside of rcu-read side in xfrm_policy_lookup_bytype (bsc#1185675).\n","id":"SUSE-SU-2021:2352-1","modified":"2021-07-15T13:16:30Z","published":"2021-07-15T13:16:30Z","references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2021/suse-su-20212352-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1152489"},{"type":"REPORT","url":"https://bugzilla.suse.com/1153274"},{"type":"REPORT","url":"https://bugzilla.suse.com/1154353"},{"type":"REPORT","url":"https://bugzilla.suse.com/1155518"},{"type":"REPORT","url":"https://bugzilla.suse.com/1164648"},{"type":"REPORT","url":"https://bugzilla.suse.com/1176447"},{"type":"REPORT","url":"https://bugzilla.suse.com/1176774"},{"type":"REPORT","url":"https://bugzilla.suse.com/1176919"},{"type":"REPORT","url":"https://bugzilla.suse.com/1177028"},{"type":"REPORT","url":"https://bugzilla.suse.com/1178134"},{"type":"REPORT","url":"https://bugzilla.suse.com/1182470"},{"type":"REPORT","url":"https://bugzilla.suse.com/1184212"},{"type":"REPORT","url":"https://bugzilla.suse.com/1184685"},{"type":"REPORT","url":"https://bugzilla.suse.com/1185486"},{"type":"REPORT","url":"https://bugzilla.suse.com/1185675"},{"type":"REPORT","url":"https://bugzilla.suse.com/1185677"},{"type":"REPORT","url":"https://bugzilla.suse.com/1186206"},{"type":"REPORT","url":"https://bugzilla.suse.com/1186666"},{"type":"REPORT","url":"https://bugzilla.suse.com/1186949"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187171"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187263"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187356"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187402"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187403"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187404"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187407"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187408"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187409"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187410"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187411"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187412"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187413"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187452"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187554"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187595"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187601"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187795"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187867"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187883"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187886"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187927"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187972"},{"type":"REPORT","url":"https://bugzilla.suse.com/1187980"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-0512"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-0605"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-33624"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-34693"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-3573"}],"related":["CVE-2021-0512","CVE-2021-0605","CVE-2021-33624","CVE-2021-34693","CVE-2021-3573"],"summary":"Security update for the Linux Kernel","upstream":["CVE-2021-0512","CVE-2021-0605","CVE-2021-33624","CVE-2021-34693","CVE-2021-3573"]}