Skip to main content

Boteraser | Website and Server Security Solutions

🛡️ openSUSE-SU-2021:1357-1 — kernel-debug (CVE-2020-3702 +5 more)

⚪ Unknown ✅ No Known Exploit OSV
N/A
CVSS Score
0 Low4 Medium7 High9 Critical10

Description

Security update for the Linux Kernel

The openSUSE Leap 15.2 kernel was updated to receive various security and bugfixes.

The following security bugs were fixed:

  • CVE-2020-3702: Specifically timed and handcrafted traffic can cause internal errors in a WLAN device that lead to improper layer 2 Wi-Fi encryption with a consequent possibility of information disclosure over the air for a discrete set of traffic (bnc#1191193).
  • CVE-2021-3669: Fixed a denial of service to replace costly bailout check in sysvipc_find_ipc() (bsc#1159886 bsc#1188986).
  • CVE-2021-3752: Fixed a use-after-free uaf bug in bluetooth (bsc#1190023).
  • CVE-2021-40490: A race condition was discovered in ext4_write_inline_data_end in fs/ext4/inline.c in the ext4 subsystem in the Linux kernel (bnc#1190159)
  • CVE-2021-3744, CVE-2021-3764: Fixed some resource leaks in the ccp driver ccp_run_aes_gcm_cmd() (bsc#1189884 bsc#1190534).

The following non-security bugs were fixed:

  • ALSA: firewire-motu: fix truncated bytes in message tracepoints (git-fixes).
  • apparmor: remove duplicate macro list_entry_is_head() (git-fixes).
  • ASoC: fsl_micfil: register platform component before registering cpu dai (git-fixes).
  • ASoC: mediatek: common: handle NULL case in suspend/resume function (git-fixes).
  • ASoC: rockchip: i2s: Fix regmap_ops hang (git-fixes).
  • ASoC: rockchip: i2s: Fixup config for DAIFMT_DSP_A/B (git-fixes).
  • ASoC: SOF: Fix DSP oops stack dump output contents (git-fixes).
  • ath9k: fix OOB read ar9300_eeprom_restore_internal (git-fixes).
  • ath9k: fix sleeping in atomic context (git-fixes).
  • blk-mq: do not deactivate hctx if managed irq isn't used (bsc#1185762).
  • blk-mq: kABI fixes for blk_mq_queue_map (bsc#1185762).
  • blk-mq: mark if one queue map uses managed irq (bsc#1185762).
  • Bluetooth: skip invalid hci_sync_conn_complete_evt (git-fixes).
  • bnx2x: fix an error code in bnx2x_nic_load() (git-fixes).
  • bnxt: count Tx drops (git-fixes).
  • bnxt: disable napi before canceling DIM (git-fixes).
  • bnxt: do not lock the tx queue from napi poll (git-fixes).
  • bnxt_en: Add missing DMA memory barriers (git-fixes).
  • bnxt_en: Disable aRFS if running on 212 firmware (git-fixes).
  • bnxt_en: Do not enable legacy TX push on older firmware (git-fixes).
  • bnxt_en: Store the running firmware version code (git-fixes).
  • bnxt: make sure xmit_more + errors does not miss doorbells (git-fixes).
  • btrfs: prevent rename2 from exchanging a subvol with a directory from different parents (bsc#1190626).
  • clk: at91: clk-generated: Limit the requested rate to our range (git-fixes).
  • clk: at91: clk-generated: pass the id of changeable parent at registration (git-fixes).
  • console: consume APC, DM, DCS (git-fixes).
  • cuse: fix broken release (bsc#1190596).
  • cxgb4: dont touch blocked freelist bitmap after free (git-fixes).
  • debugfs: Return error during {full/open}_proxy_open() on rmmod (bsc#1173746).
  • devlink: Break parameter notification sequence to be before/after unload/load driver (bsc#1154353).
  • dmaengine: ioat: depends on !UML (git-fixes).
  • dmaengine: sprd: Add missing MODULE_DEVICE_TABLE (git-fixes).
  • dmaengine: xilinx_dma: Set DMA mask for coherent APIs (git-fixes).
  • docs: Fix infiniband uverbs minor number (git-fixes).
  • drivers: gpu: amd: Initialize amdgpu_dm_backlight_caps object to 0 in amdgpu_dm_update_backlight_caps (git-fixes).
  • drm/amd/amdgpu: Update debugfs link_settings output link_rate field in hex (git-fixes).
  • drm/amd/display: Fix timer_per_pixel unit error (git-fixes).
  • drm/amdgpu: Fix BUG_ON assert (git-fixes).
  • drm: avoid blocking in drm_clients_info's rcu section (git-fixes).
  • drm/gma500: Fix end of loop tests for list_for_each_entry (git-fixes).
  • drm/nouveau/nvkm: Replace -ENOSYS with -ENODEV (git-fixes).
  • drm/panfrost: Clamp lock region to Bifrost minimum (git-fixes).
  • e1000e: Do not take care about recovery NVM checksum (jsc#SLE-8100).
  • e1000e: Fix the max snoop/no-snoop latency for 10M (git-fixes).
  • EDAC/i10nm: Fix NVDIMM detection (bsc#1152489).
  • EDAC/synopsys: Fix wrong value type assignment for edac_mode (bsc#1152489).
  • erofs: fix up erofs_lookup tracepoint (git-fixes).
  • fbmem: do not allow too huge resolutions (git-fixes).
  • fpga: machxo2-spi: Fix missing error code in machxo2_write_complete() (git-fixes).
  • fpga: machxo2-spi: Return an error on failure (git-fixes).
  • fuse: flush extending writes (bsc#1190595).
  • fuse: truncate pagecache on atomic_o_trunc (bsc#1190705).
  • genirq: add device_has_managed_msi_irq (bsc#1185762).
  • gpio: uniphier: Fix void functions to remove return value (git-fixes).
  • gpu: drm: amd: amdgpu: amdgpu_i2c: fix possible uninitialized-variable access in amdgpu_i2c_router_select_ddc_port() (git-fixes).
  • gve: fix the wrong AdminQ buffer overflow check (bsc#1176940).
  • hv: mana: remove netdev_lockdep_set_classes usage (jsc#SLE-18779, bsc#1185726).
  • hv_netvsc: Make netvsc/VF binding check both MAC and serial number (jsc#SLE-18779, bsc#1185726).
  • hwmon: (mlxreg-fan) Return non-zero value when

Affected software

openSUSE-SU-2021:1357-1 is recorded against 10 packages.

  • kernel-debug (fixed in 5.3.18-lp152.95.1)
  • kernel-default (fixed in 5.3.18-lp152.95.1)
  • kernel-default-base (fixed in 5.3.18-lp152.95.1.lp152.8.44.1)
  • kernel-docs (fixed in 5.3.18-lp152.95.1)
  • kernel-kvmsmall (fixed in 5.3.18-lp152.95.1)
  • kernel-obs-build (fixed in 5.3.18-lp152.95.1)
  • kernel-obs-qa (fixed in 5.3.18-lp152.95.1)
  • kernel-preempt (fixed in 5.3.18-lp152.95.1)
  • kernel-source (fixed in 5.3.18-lp152.95.1)
  • kernel-syms (fixed in 5.3.18-lp152.95.1)

Timeline and source

Published on 15 October 2021 and last revised on 4 February 2026. No public exploit is currently recorded for this entry. Record sourced from OSV.

References

lists.opensuse.org (Advisory)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)

Details

Severity Unknown
CVSS Score N/A
CVSS Vector N/A
CWE N/A
Public Exploit ✅ No
Source OSV
Published 2021-10-15
Updated 2026-08-20
Modified 2026-02-04
Fix URL N/A

Affected Packages

Software From version Fixed in
kernel-debug 5.3.18-lp152.95.1
kernel-default 5.3.18-lp152.95.1
kernel-default-base 5.3.18-lp152.95.1.lp152.8.44.1
kernel-docs 5.3.18-lp152.95.1
kernel-kvmsmall 5.3.18-lp152.95.1
kernel-obs-build 5.3.18-lp152.95.1
kernel-obs-qa 5.3.18-lp152.95.1
kernel-preempt 5.3.18-lp152.95.1
kernel-source 5.3.18-lp152.95.1
kernel-syms 5.3.18-lp152.95.1

References

Similar Threats

Free Vulnerability Check

Is your site affected by openSUSE-SU-2021:1357-1?

BotEraser helps you identify potentially vulnerable plugins and themes by checking your installation against openSUSE-SU-2021:1357-1 and other known CVE records.

Scan My Site Free →

No credit card required  ·  Results in minutes

ⓘ Data Notice: The information presented above has been compiled from publicly available internet sources. Boteraser aggregates this data solely for informational purposes and does not independently classify, evaluate, or endorse any findings about the vulnerabilities listed. The accuracy and completeness of this information is the sole responsibility of the original publishers. Boteraser and its operators accept no liability for any decisions made based on this data.