Security update for the Linux Kernel (Live Patch 26 for SLE 15 SP2)
Details
This update for the Linux Kernel 5.3.18-15020024112 fixes several issues.
The following security issues were fixed:
CVE-2022-20154: Fixed a use after free due to a race condition in locksocknested of sock.c. This could lead to local escalation of privilege with System execution privileges needed (bsc#1200599).
CVE-2022-21499: Reinforced the kernel lockdown feature, until now it's been trivial to break out of it with kgdb or kdb (bsc#1199426).
CVE-2022-1729: Fixed a sysperfevent_open() race condition against self (bsc#1199507).