🛡️ SUSE-SU-2024:1465-1 — kernel-rt (CVE-2020-36780 +144 more)

⚪ Unknown ✅ No Known Exploit OSV
N/A
CVSS Score
0 Low4 Medium7 High9 Critical10

Description

Security update for the Linux Kernel

The SUSE Linux Enterprise 15 SP3 RT kernel was updated to receive various security bugfixes.

The following security bugs were fixed:

  • CVE-2020-36780: Fixed a reference leak when pm_runtime_get_sync fails in i2c (bsc#1220556).
  • CVE-2020-36781: Fixed reference leak when pm_runtime_get_sync fails in i2c/imx (bsc#1220557).
  • CVE-2020-36782: Fixed a reference leak when pm_runtime_get_sync fails in i2c imx-lpi2c (bsc#1220560).
  • CVE-2020-36783: Fixed a reference leak when pm_runtime_get_sync fails in i2c img-scb (bsc#1220561).
  • CVE-2021-46908: Fixed incorrect permission flag for mixed signed bounds arithmetic in bpf (bsc#1220425).
  • CVE-2021-46909: Fixed a PCI interrupt mapping in ARM footbridge (bsc#1220442).
  • CVE-2021-46911: Fixed kernel panic (bsc#1220400).
  • CVE-2021-46914: Fixed unbalanced device enable/disable in suspend/resume in pci_disable_device() (bsc#1220465).
  • CVE-2021-46917: Fixed wq cleanup of WQCFG registers in idxd (bsc#1220432).
  • CVE-2021-46918: Fixed not clearing MSIX permission entry on shutdown in idxd (bsc#1220429).
  • CVE-2021-46919: Fixed wq size store permission state in idxd (bsc#1220414).
  • CVE-2021-46920: Fixed clobbering of SWERR overflow bit on writeback (bsc#1220426).
  • CVE-2021-46921: Fixed ordering in queued_write_lock_slowpath (bsc#1220468).
  • CVE-2021-46922: Fixed TPM reservation for seal/unseal (bsc#1220475).
  • CVE-2021-46930: Fixed usb/mtu3 list_head check warning (bsc#1220484).
  • CVE-2021-46931: Fixed wrong type casting in mlx5e_tx_reporter_dump_sq() (bsc#1220486).
  • CVE-2021-46933: Fixed possible underflow in ffs_data_clear() (bsc#1220487).
  • CVE-2021-46938: Fixed a double free of blk_mq_tag_set in dev remove after table load fails in dm rq (bsc#1220554).
  • CVE-2021-46939: Fixed a denial of service in trace_clock_global() in tracing (bsc#1220580).
  • CVE-2021-46943: Fixed an oops in set_fmt error handling in media: staging/intel-ipu3 (bsc#1220583).
  • CVE-2021-46944: Fixed a memory leak in imu_fmt in media staging/intel-ipu3 (bsc#1220566).
  • CVE-2021-46950: Fixed a data corruption bug in raid1 arrays using bitmaps in md/raid1 (bsc#1220662).
  • CVE-2021-46951: Fixed an integer underflow of efi_tpm_final_log_size in tpm_read_log_efi in tpm efi (bsc#1220615).
  • CVE-2021-46956: Fixed memory leak in virtio_fs_probe() (bsc#1220516).
  • CVE-2021-46958: Fixed a race between transaction aborts and fsyncs leading to use-after-free in btrfs (bsc#1220521).
  • CVE-2021-46959: Fixed use-after-free with devm_spi_alloc_* (bsc#1220734).
  • CVE-2021-46960: Fixed a warning on smb2_get_enc_key in cifs (bsc#1220528).
  • CVE-2021-46961: Fixed spurious interrup handling (bsc#1220529).
  • CVE-2021-46962: Fixed a resource leak in the remove function in mmc uniphier-sd (bsc#1220532).
  • CVE-2021-46963: Fixed crash in qla2xxx_mqueuecommand() (bsc#1220536).
  • CVE-2021-46971: Fixed unconditional security_locked_down() call (bsc#1220697).
  • CVE-2021-46976: Fixed crash in auto_retire in drm/i915 (bsc#1220621).
  • CVE-2021-46980: Fixed not retrieving all the PDOs instead of just the first 4 in usb/typec/ucsi (bsc#1220663).
  • CVE-2021-46981: Fixed a NULL pointer in flush_workqueue in nbd (bsc#1220611).
  • CVE-2021-46983: Fixed NULL pointer dereference when SEND is completed with error (bsc#1220639).
  • CVE-2021-46984: Fixed an out of bounds access in kyber_bio_merge() in kyber (bsc#1220631).
  • CVE-2021-46988: Fixed release page in error path to avoid BUG_ON (bsc#1220706).
  • CVE-2021-46990: Fixed a denial of service when toggling entry flush barrier in powerpc/64s (bsc#1220743).
  • CVE-2021-46991: Fixed a use-after-free in i40e_client_subtask (bsc#1220575).
  • CVE-2021-46992: Fixed a bug to avoid overflows in nft_hash_buckets (bsc#1220638).
  • CVE-2021-46998: Fixed an use after free bug in enic_hard_start_xmit in ethernet/enic (bsc#1220625).
  • CVE-2021-47000: Fixed an inode leak on getattr error in __fh_to_dentry in ceph (bsc#1220669).
  • CVE-2021-47001: Fixed cwnd update ordering in xprtrdma (bsc#1220670).
  • CVE-2021-47003: Fixed potential null dereference on pointer status in idxd_cmd_exec (bsc#1220677).
  • CVE-2021-47006: Fixed wrong check in overflow_handler hook in ARM 9064/1 hw_breakpoint (bsc#1220751).
  • CVE-2021-47009: Fixed memory leak on object td (bsc#1220733).
  • CVE-2021-47014: Fixed wild memory access when clearing fragments in net/sched/act_ct (bsc#1220630).
  • CVE-2021-47015: Fixed a RX consumer index logic in the error path in bnxt_rx_pkt() in bnxt_en (bsc#1220794).
  • CVE-2021-47017: Fixed use after free in ath10k_htc_send_bundle (bsc#1220678).
  • CVE-2021-47020: Fixed a memory leak in stream config error path in soundwire stream (bsc#1220785).
  • CVE-2021-47026: Fixed not destroying sysfs after removing session from active list (bsc#1220685).
  • CVE-2021-47034: Fixed a kernel memory fault for pte update on radix in powerpc/64s (bsc#1220687).
  • CVE-2021-47035: Fixed wrong WO permissions on second-level paging entries in iommu/vt-d (bsc#1220688).
  • CVE-2021-47038: Fixe

Affected software

SUSE-SU-2024:1465-1 is recorded against 2 packages.

  • kernel-rt (fixed in 5.3.18-150300.166.1)
  • kernel-source-rt (fixed in 5.3.18-150300.166.1)

Timeline and source

Published on 29 April 2024 and last revised on 4 February 2026. No public exploit is currently recorded for this entry. Record sourced from OSV.

References

www.suse.com (Advisory)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)

Details

Severity Unknown
CVSS Score N/A
CVSS Vector N/A
CWE N/A
Public Exploit ✅ No
Source OSV
Published 2024-04-29
Updated 2026-08-20
Modified 2026-02-04
Fix URL N/A

Affected Packages

Software From version Fixed in
kernel-rt 5.3.18-150300.166.1
kernel-source-rt 5.3.18-150300.166.1

References

Similar Threats

Free Vulnerability Check

Is your site affected by SUSE-SU-2024:1465-1?

BotEraser helps you identify potentially vulnerable plugins and themes by checking your installation against SUSE-SU-2024:1465-1 and other known CVE records.

Scan My Site Free →

No credit card required  ·  Results in minutes

ⓘ Data Notice: The information presented above has been compiled from publicly available internet sources. Boteraser aggregates this data solely for informational purposes and does not independently classify, evaluate, or endorse any findings about the vulnerabilities listed. The accuracy and completeness of this information is the sole responsibility of the original publishers. Boteraser and its operators accept no liability for any decisions made based on this data.

Browse related advisories

All advisoriesSUSESUSE 2024