SUSE-SU-2025:0603-1

Source
https://www.suse.com/support/update/announcement/2025/suse-su-20250603-1/
Import Source
https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2025:0603-1.json
JSON Data
https://api.osv.dev/v1/vulns/SUSE-SU-2025:0603-1
Related
Published
2025-02-20T10:34:39Z
Modified
2025-05-02T04:36:50.171991Z
Upstream
Summary
Security update for the Linux Kernel
Details

The SUSE Linux Enterprise 11 SP4 kernel was updated to receive various security bugfixes.

The following security bugs were fixed:

  • CVE-2024-35863: smb: client: fix potential UAF in isvalidoplock_break() (bsc#1224763).
  • CVE-2024-53104: media: uvcvideo: Skip parsing frames of type UVCVSUNDEFINED in uvcparseformat (bsc#1234025).
  • CVE-2024-56600: net: inet6: do not leave a dangling sk pointer in inet6_create() (bsc#1235217).
  • CVE-2024-56601: net: inet: do not leave a dangling sk pointer in inet_create() (bsc#1235230).
  • CVE-2024-56650: netfilter: xtables: fix LED ID check in ledtg_check() (bsc#1235430).
  • CVE-2024-56759: btrfs: fix use-after-free when COWing tree bock and tracing is enabled (bsc#1235645).
  • CVE-2024-57850: jffs2: Prevent rtime decompress memory corruption (bsc#1235812).
  • CVE-2024-57893: ALSA: seq: oss: Fix races at processing SysEx messages (bsc#1235920).
References

Affected packages

SUSE:Linux Enterprise Server 11 SP4 LTSS EXTREME CORE / kernel-default

Package

Name
kernel-default
Purl
pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP4%20LTSS%20EXTREME%20CORE

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.0.101-108.177.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-default-base": "3.0.101-108.177.1",
            "kernel-ec2": "3.0.101-108.177.1",
            "kernel-default": "3.0.101-108.177.1",
            "kernel-source": "3.0.101-108.177.1",
            "kernel-syms": "3.0.101-108.177.1",
            "kernel-trace": "3.0.101-108.177.1",
            "kernel-trace-devel": "3.0.101-108.177.1",
            "kernel-ec2-devel": "3.0.101-108.177.1",
            "kernel-ec2-base": "3.0.101-108.177.1",
            "kernel-xen-devel": "3.0.101-108.177.1",
            "kernel-xen-base": "3.0.101-108.177.1",
            "kernel-trace-base": "3.0.101-108.177.1",
            "kernel-xen": "3.0.101-108.177.1",
            "kernel-default-devel": "3.0.101-108.177.1"
        }
    ]
}

SUSE:Linux Enterprise Server 11 SP4 LTSS EXTREME CORE / kernel-ec2

Package

Name
kernel-ec2
Purl
pkg:rpm/suse/kernel-ec2&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP4%20LTSS%20EXTREME%20CORE

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.0.101-108.177.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-default-base": "3.0.101-108.177.1",
            "kernel-ec2": "3.0.101-108.177.1",
            "kernel-default": "3.0.101-108.177.1",
            "kernel-source": "3.0.101-108.177.1",
            "kernel-syms": "3.0.101-108.177.1",
            "kernel-trace": "3.0.101-108.177.1",
            "kernel-trace-devel": "3.0.101-108.177.1",
            "kernel-ec2-devel": "3.0.101-108.177.1",
            "kernel-ec2-base": "3.0.101-108.177.1",
            "kernel-xen-devel": "3.0.101-108.177.1",
            "kernel-xen-base": "3.0.101-108.177.1",
            "kernel-trace-base": "3.0.101-108.177.1",
            "kernel-xen": "3.0.101-108.177.1",
            "kernel-default-devel": "3.0.101-108.177.1"
        }
    ]
}

SUSE:Linux Enterprise Server 11 SP4 LTSS EXTREME CORE / kernel-source

Package

Name
kernel-source
Purl
pkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP4%20LTSS%20EXTREME%20CORE

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.0.101-108.177.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-default-base": "3.0.101-108.177.1",
            "kernel-ec2": "3.0.101-108.177.1",
            "kernel-default": "3.0.101-108.177.1",
            "kernel-source": "3.0.101-108.177.1",
            "kernel-syms": "3.0.101-108.177.1",
            "kernel-trace": "3.0.101-108.177.1",
            "kernel-trace-devel": "3.0.101-108.177.1",
            "kernel-ec2-devel": "3.0.101-108.177.1",
            "kernel-ec2-base": "3.0.101-108.177.1",
            "kernel-xen-devel": "3.0.101-108.177.1",
            "kernel-xen-base": "3.0.101-108.177.1",
            "kernel-trace-base": "3.0.101-108.177.1",
            "kernel-xen": "3.0.101-108.177.1",
            "kernel-default-devel": "3.0.101-108.177.1"
        }
    ]
}

SUSE:Linux Enterprise Server 11 SP4 LTSS EXTREME CORE / kernel-syms

Package

Name
kernel-syms
Purl
pkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP4%20LTSS%20EXTREME%20CORE

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.0.101-108.177.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-default-base": "3.0.101-108.177.1",
            "kernel-ec2": "3.0.101-108.177.1",
            "kernel-default": "3.0.101-108.177.1",
            "kernel-source": "3.0.101-108.177.1",
            "kernel-syms": "3.0.101-108.177.1",
            "kernel-trace": "3.0.101-108.177.1",
            "kernel-trace-devel": "3.0.101-108.177.1",
            "kernel-ec2-devel": "3.0.101-108.177.1",
            "kernel-ec2-base": "3.0.101-108.177.1",
            "kernel-xen-devel": "3.0.101-108.177.1",
            "kernel-xen-base": "3.0.101-108.177.1",
            "kernel-trace-base": "3.0.101-108.177.1",
            "kernel-xen": "3.0.101-108.177.1",
            "kernel-default-devel": "3.0.101-108.177.1"
        }
    ]
}

SUSE:Linux Enterprise Server 11 SP4 LTSS EXTREME CORE / kernel-trace

Package

Name
kernel-trace
Purl
pkg:rpm/suse/kernel-trace&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP4%20LTSS%20EXTREME%20CORE

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.0.101-108.177.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-default-base": "3.0.101-108.177.1",
            "kernel-ec2": "3.0.101-108.177.1",
            "kernel-default": "3.0.101-108.177.1",
            "kernel-source": "3.0.101-108.177.1",
            "kernel-syms": "3.0.101-108.177.1",
            "kernel-trace": "3.0.101-108.177.1",
            "kernel-trace-devel": "3.0.101-108.177.1",
            "kernel-ec2-devel": "3.0.101-108.177.1",
            "kernel-ec2-base": "3.0.101-108.177.1",
            "kernel-xen-devel": "3.0.101-108.177.1",
            "kernel-xen-base": "3.0.101-108.177.1",
            "kernel-trace-base": "3.0.101-108.177.1",
            "kernel-xen": "3.0.101-108.177.1",
            "kernel-default-devel": "3.0.101-108.177.1"
        }
    ]
}

SUSE:Linux Enterprise Server 11 SP4 LTSS EXTREME CORE / kernel-xen

Package

Name
kernel-xen
Purl
pkg:rpm/suse/kernel-xen&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP4%20LTSS%20EXTREME%20CORE

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.0.101-108.177.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-default-base": "3.0.101-108.177.1",
            "kernel-ec2": "3.0.101-108.177.1",
            "kernel-default": "3.0.101-108.177.1",
            "kernel-source": "3.0.101-108.177.1",
            "kernel-syms": "3.0.101-108.177.1",
            "kernel-trace": "3.0.101-108.177.1",
            "kernel-trace-devel": "3.0.101-108.177.1",
            "kernel-ec2-devel": "3.0.101-108.177.1",
            "kernel-ec2-base": "3.0.101-108.177.1",
            "kernel-xen-devel": "3.0.101-108.177.1",
            "kernel-xen-base": "3.0.101-108.177.1",
            "kernel-trace-base": "3.0.101-108.177.1",
            "kernel-xen": "3.0.101-108.177.1",
            "kernel-default-devel": "3.0.101-108.177.1"
        }
    ]
}