SUSE SLES15: cluster-md-kmp-default / dlm-kmp-default / gfs2-kmp-default / etc (SUSE-SU-2026:3593-1)

high Nessus プラグイン ID 335098

Language:

概要

リモートの SUSE ホストに 1 つ以上のセキュリティ更新がありません。

説明

リモートの SUSE Linux SLES15 / SLES_SAP15 ホストには、SUSE-SU-2026:3593-1 のアドバイザリに記載された複数の脆弱性の影響を受けるパッケージがインストールされています。

SUSE Linux Enterprise 15 SP4 カーネルが更新され、さまざまなセキュリティ問題が修正されました:

以下のセキュリティ問題が修正されました。

- CVE-2022-4994:KVM:x86:emulator_pio_in から高速 IN を離脱します(bsc#1273097)。
- CVE-2023-53995:net:ipv4:__inet_del_ifa() 内の 1 つのメモリリークを修正します(bsc#1255616)。
- CVE-2026-46052:ceph:ハッシュ化されていない場合は負の dentry のみをd_add()します(bsc#1267494)。
- CVE-2026-46056:Bluetooth:hci_event:SSP パスキーハンドラーの UAF の可能性を修正(bsc#1267435)。
- CVE-2026-46145:RDMA/mana:rx_hash_key_lenを検証します(bsc#1267715)。
- CVE-2026-46193:xfrm:ah:非同期コールバックで ESN の高ビットを考慮します(bsc#1267656)。
- CVE-2026-52956:libceph:__ceph_x_decrypt() で発生する可能性のある領域外アクセスを修正します(bsc#1269172)。
- CVE-2026-52958:libceph:osdmap_decode() で発生する可能性のある領域外アクセスを修正します(bsc#1269174)。
- CVE-2026-52967:smb/client:symlink_data() での無限ループと OOB 読み取りの可能性を修正します(bsc#1269181)。
- CVE-2026-52986:netfilter:nf_conntrack_sip:simple_strtoulを使用しません(bsc#1269289)。
- CVE-2026-53050:quota:クォータ無効化(bsc#1269188)を伴う dquot_scan_active() の競合を修正します。
- CVE-2026-53131:netfilter:eth_hdr() を使用する前にイーサネット MAC ヘッダーが必要です(bsc#1269773)。
- CVE-2026-53196:USB:シリアル:io_ti:get_manuf_info() のヒープオーバーフローを修正します(bsc#1269986)。
- CVE-2026-53224:sctp:クッキーに埋め込まれた INIT チャンクとアドレスリストの長さを検証します(bsc#1269997)。
- CVE-2026-53246:sctp:COOKIE_ECHO処理におけるキャッシュされたピア INIT チャンクの長さを検証します(bsc#1269988)。
- CVE-2026-53256:Bluetooth:RFCOMM:rfcomm_connect_ind() のリスナーソケットを保持します(bsc#1269993)。
- CVE-2026-53260:プリエンプト:preempt_[dis|en]able_nested() を提供します(bsc#1269731)。
- CVE-2026-53267:netfilter:nft_ct:get eval におけるテンプレート ct での救済(bsc#1269577)。
- CVE-2026-53354:arm64:エラータ:さまざまな Arm CPU で TLBI エラータを緩和します(bsc#1270230)。
- CVE-2026-53357:Bluetooth:l2cap_sock_cleanup_listen() 対 l2cap_conn_del() の UAF を修正(bsc#1270257)。
- CVE-2026-53375:drm/amdgpu/vce:部分的なアドレスパッチを防止します(bsc#1271899)。
- CVE-2026-53388:fuse:ページキャッシュフォリオを置き換える前に要求を再ロックします(bsc#1271825)。
- CVE-2026-53391:NFSv4/pNFS:nfs4_decode_mp_ds_addr でゼロレングスr_addrを拒否します(bsc#1271904)。
- CVE-2026-53402:fbdev:fbcon:(bsc#1271908)のerr_outにおける領域外読み取りを修正します。
- CVE-2026-63794:KVM:SVM:暗号化パスに対する sev_dbg_crypt() でのページオーバーフローを修正します(bsc#1271964)。
- CVE-2026-63806:KVM:ioeventfd datamatch のゲストがトリガー可能な BUG_ON() を get_unaligned() で置換します(bsc#1272268)。
- CVE-2026-63807:KVM:x86/mmu:最大マッピングレベル(bsc#1272263)をチェックする前に HugePage がスロット別に入っていることを確認します。
- CVE-2026-63824:KEYS:keyctl_pkey_params_get_2() のオーバーフローを修正します(bsc#1272180)。
- CVE-2026-63829:net:ip_gre:changelink 用のデバイス netns で CAP_NET_ADMIN が必要です(bsc#1272176)。
- CVE-2026-63893:thunderbolt:プロパティ:tb_property_entry_valid() の u32 ラップを拒否します(bsc#1272607)。
- CVE-2026-63917:ip6:vti:vti6_changelink() で ip6_tnl.net を使用します(bsc#1272904)。
- CVE-2026-63919:xfrm:input:遅延トランスポート再注入中に netns を保留します(bsc#1272907)。
- CVE-2026-63921:ip6:vti:vti6_siocdevprivate() で ip6_tnl.net を使用します(bsc#1272918)。
- CVE-2026-63922、CVE-2026-63924:ipv6:exthdrs:ネットワークヘッダーポインターを一度再計算します(bsc#1272855)。
- CVE-2026-63971:sctp:sctp_wait_for_connect と peeloff の間の競合を修正します(bsc#1272678)。
- CVE-2026-63975:Bluetooth:L2CAP:l2cap_ecred_conn_rsp でのクラッシュの可能性を修正します(bsc#1272694)。
- CVE-2026-63984:ipv6:rpl:ipv6_rpl_srh_decompress() の hdrlen オーバーフローを修正(bsc#1272865)。
- CVE-2026-63994:トンネル:iptunnel_pmtud_build_icmp() の skb_cow() の後のネットワークヘッダーをロードします(bsc#1273035)。
- CVE-2026-64106:KVM:arm64:vgic-its:範囲外のnum_eventid_bitsで復元された DTE を拒否します(bsc#1272242)。
- CVE-2026-64189:netfilter:ipset:ダンプとip_set_listのサイズ変更の間の競合を修正します(bsc#1272207)。
- CVE-2026-64561:KVM:x86:MMU ページを利用可能にした *後* 無効な/廃止されたルートをチェックします(bsc#1273231)。
- CVE-2026-64560:posix-cpu-timers:非リーダー exec() の競合によって引き起こされる UAF を回避します(bsc#1273004)。
- CVE-2026-64564:sctp:DEL-IP 処理において ASCONF 自身のトランスポートを解放しません(bsc#1274072)。
- CVE-2026-64600:xfs:ILOCK のサイクル後にデータフォークマッピングをリサンプリングします(bsc#1271526)。

セキュリティに関係しない以下の問題が修正されました。

- hrtimers:hrtimer_init() を置換するために hrtimer_setup() を導入します(bsc#1271912)。
- mkspec-dtb:不足している DTB をスキップします。
- pkspec-dtb:dtb-al の名前の変更を修正します。
- posix-cpu-timers:起動ロジックをクリーンアップします(bsc#1271912)。
- posix-cpu-timers:posix_cpu_timer_del() のタイマーステータスを正しく更新します(bsc#1271912)。
- posix-cpu-timers:タイマー SIGEV_NONEアムを調整しません(bsc#1271912)。
- posix-cpu-timers:timer_get() でインターバルタイマーを正しく処理します(bsc#1271912)。
- posix-cpu-timers:timer_get() において SIGEV_NONE タイマーを正しく処理します(bsc#1271912)。
- posix-cpu-timers:timer_set() で SIGEV_NONE タイマーを正しく処理します(bsc#1271912)。
- posix-cpu-timers:k_itimer::it_active を整合させます(bsc#1271912)。
- posix-cpu-timers:posix_cpu_timer_set() の正しくないコメントを削除します(bsc#1271912)。
- posix-cpu-timers:posix_cpu_timer_set() の古い有効期限取得を置換します(bsc#1271912)。
- posix-cpu-timers:posix_cpu_timer_set() を単純化します(bsc#1271912)。
- posix-cpu-timers:posix_cpu_timer_get() を分割します(bsc#1271912)。
- posix-cpu-timers:明瞭さのため、@val ではなく @now を使用します(bsc#1271912)。
- posix-timers:適切な状態追跡を追加します(bsc#1271912)。
- posix-timers:hrtimer クロックベースへの直接アクセスを回避します(bsc#1271912)。
- posix-timers:posix_timer_fn() コメントを明確にします(bsc#1271912)。
- posix-timers:common_timer_set() のオーバーランをクリアします(bsc#1271912)。
- posix-timers:信号キューイングを統合します(bsc#1271912)。
- posix-timers:タイマーセットアップを統合します(bsc#1271912)。
- posix-timers:si_sys_private競合を治癒します(bsc#1271912)。
- posix-timers:common_clock_get() を正しく文書化します(bsc#1271912)。
- posix-timers:ブール値戻り値(bsc#1271912)で timer_arm() コールバックを展開します。
- posix-timers:コーディングスタイルをいくつかの部分で磨き上げます(bsc#1271912)。
- posix-timers:一般的な timer_settime() コード(bsc#1271912)で間隔を取得します。
- sctp:埋め込まれたアドレスパラメーターの長さを検証します(git-fixes)。
- time:hrtimer_setup() に切り替えます(bsc#1271912)。

Tenable は、前述の記述ブロックを SUSE セキュリティアドバイザリから直接抽出しています。

Nessus はこれらの問題をテストしておらず、代わりにアプリケーションが自己報告するバージョン番号にのみ依存していることに注意してください。

ソリューション

影響を受けるパッケージを更新してください。

参考資料

https://bugzilla.suse.com/1185845

https://bugzilla.suse.com/1237888

https://bugzilla.suse.com/1243603

https://bugzilla.suse.com/1254767

https://bugzilla.suse.com/1255616

https://bugzilla.suse.com/1258718

https://bugzilla.suse.com/1262573

https://bugzilla.suse.com/1263718

https://bugzilla.suse.com/1263788

https://bugzilla.suse.com/1264013

https://bugzilla.suse.com/1264076

https://bugzilla.suse.com/1264089

https://bugzilla.suse.com/1265308

https://bugzilla.suse.com/1266238

https://bugzilla.suse.com/1266850

https://bugzilla.suse.com/1267384

https://bugzilla.suse.com/1267435

https://bugzilla.suse.com/1267494

https://bugzilla.suse.com/1267596

https://bugzilla.suse.com/1267656

https://bugzilla.suse.com/1267715

https://bugzilla.suse.com/1268029

https://bugzilla.suse.com/1269172

https://bugzilla.suse.com/1269174

https://bugzilla.suse.com/1269181

https://bugzilla.suse.com/1269188

https://bugzilla.suse.com/1269289

https://bugzilla.suse.com/1269577

https://bugzilla.suse.com/1269731

https://bugzilla.suse.com/1269773

https://bugzilla.suse.com/1269986

https://bugzilla.suse.com/1269988

https://bugzilla.suse.com/1269993

https://bugzilla.suse.com/1269997

https://bugzilla.suse.com/1270230

https://bugzilla.suse.com/1270257

https://bugzilla.suse.com/1271526

https://bugzilla.suse.com/1271825

https://bugzilla.suse.com/1271899

https://bugzilla.suse.com/1271904

https://bugzilla.suse.com/1271908

https://bugzilla.suse.com/1271912

https://bugzilla.suse.com/1271964

https://bugzilla.suse.com/1272176

https://bugzilla.suse.com/1272180

https://bugzilla.suse.com/1272207

https://bugzilla.suse.com/1272242

https://bugzilla.suse.com/1272263

https://bugzilla.suse.com/1272268

https://bugzilla.suse.com/1272607

https://bugzilla.suse.com/1272678

https://bugzilla.suse.com/1272694

https://bugzilla.suse.com/1272855

https://bugzilla.suse.com/1272865

https://bugzilla.suse.com/1272904

https://bugzilla.suse.com/1272907

https://bugzilla.suse.com/1272918

https://bugzilla.suse.com/1273004

https://bugzilla.suse.com/1273035

https://bugzilla.suse.com/1273097

https://bugzilla.suse.com/1273231

https://bugzilla.suse.com/1274072

https://www.suse.com/security/cve/CVE-2022-4994

https://www.suse.com/security/cve/CVE-2023-2058

https://www.suse.com/security/cve/CVE-2023-53995

https://www.suse.com/security/cve/CVE-2025-21710

https://www.suse.com/security/cve/CVE-2025-54518

https://www.suse.com/security/cve/CVE-2026-31431

https://www.suse.com/security/cve/CVE-2026-31598

https://www.suse.com/security/cve/CVE-2026-31628

https://www.suse.com/security/cve/CVE-2026-31759

https://www.suse.com/security/cve/CVE-2026-43033

https://www.suse.com/security/cve/CVE-2026-46052

https://www.suse.com/security/cve/CVE-2026-46056

https://www.suse.com/security/cve/CVE-2026-46080

https://www.suse.com/security/cve/CVE-2026-46109

https://www.suse.com/security/cve/CVE-2026-46145

https://www.suse.com/security/cve/CVE-2026-46174

https://www.suse.com/security/cve/CVE-2026-46193

https://www.suse.com/security/cve/CVE-2026-46243

https://www.suse.com/security/cve/CVE-2026-46323

https://www.suse.com/security/cve/CVE-2026-46333

https://www.suse.com/security/cve/CVE-2026-52956

https://www.suse.com/security/cve/CVE-2026-52958

https://www.suse.com/security/cve/CVE-2026-52967

https://www.suse.com/security/cve/CVE-2026-52986

https://www.suse.com/security/cve/CVE-2026-53050

https://www.suse.com/security/cve/CVE-2026-53131

https://www.suse.com/security/cve/CVE-2026-53196

https://www.suse.com/security/cve/CVE-2026-53224

https://www.suse.com/security/cve/CVE-2026-53246

https://www.suse.com/security/cve/CVE-2026-53256

https://www.suse.com/security/cve/CVE-2026-53260

https://www.suse.com/security/cve/CVE-2026-53267

https://www.suse.com/security/cve/CVE-2026-53354

https://www.suse.com/security/cve/CVE-2026-53357

https://www.suse.com/security/cve/CVE-2026-53375

https://www.suse.com/security/cve/CVE-2026-53388

https://www.suse.com/security/cve/CVE-2026-53391

https://www.suse.com/security/cve/CVE-2026-53402

https://www.suse.com/security/cve/CVE-2026-63794

https://www.suse.com/security/cve/CVE-2026-63806

https://www.suse.com/security/cve/CVE-2026-63807

https://www.suse.com/security/cve/CVE-2026-63824

https://www.suse.com/security/cve/CVE-2026-63829

https://www.suse.com/security/cve/CVE-2026-63893

https://www.suse.com/security/cve/CVE-2026-63917

https://www.suse.com/security/cve/CVE-2026-63919

https://www.suse.com/security/cve/CVE-2026-63921

https://www.suse.com/security/cve/CVE-2026-63922

https://www.suse.com/security/cve/CVE-2026-63924

https://www.suse.com/security/cve/CVE-2026-63971

https://www.suse.com/security/cve/CVE-2026-63975

https://www.suse.com/security/cve/CVE-2026-63984

https://www.suse.com/security/cve/CVE-2026-63994

https://www.suse.com/security/cve/CVE-2026-64106

https://www.suse.com/security/cve/CVE-2026-64189

https://www.suse.com/security/cve/CVE-2026-64560

https://www.suse.com/security/cve/CVE-2026-64561

https://www.suse.com/security/cve/CVE-2026-64564

https://www.suse.com/security/cve/CVE-2026-64600

http://www.nessus.org/u?2b8f2d27

プラグインの詳細

深刻度: High

ID: 335098

ファイル名: suse_SU-2026-3593-1.nasl

バージョン: 1.2

タイプ: Local

エージェント: unix

公開日: 2026/8/13

更新日: 2026/8/14

サポートされているセンサー: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Agentless Assessment, Continuous Assessment, Tenable Cloud Security, Tenable Self-Hosted Container Security, Nessus

リスク情報

VPR

リスクファクター: Critical

スコア: 9.5

パーセンタイル: 99.86

CVSS v2

リスクファクター: Low

基本値: 3.3

現状値: 2.9

ベクトル: CVSS2#AV:N/AC:L/Au:M/C:N/I:P/A:N

CVSS スコアのソース: CVE-2023-2058

CVSS v3

リスクファクター: High

基本値: 7.8

現状値: 7.5

ベクトル: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

現状ベクトル: CVSS:3.0/E:H/RL:O/RC:C

CVSS スコアのソース: CVE-2026-63794

CVSS v4

リスクファクター: High

Base Score: 7.3

Threat Score: 7.3

Threat Vector: CVSS:4.0/E:A

Vector: CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

CVSS スコアのソース: CVE-2025-54518

脆弱性情報

CPE: cpe:/o:novell:suse_linux:15, p-cpe:/a:novell:suse_linux:cluster-md-kmp-default, p-cpe:/a:novell:suse_linux:dlm-kmp-default, p-cpe:/a:novell:suse_linux:gfs2-kmp-default, p-cpe:/a:novell:suse_linux:kernel-64kb, p-cpe:/a:novell:suse_linux:kernel-default-base, p-cpe:/a:novell:suse_linux:kernel-default-livepatch, p-cpe:/a:novell:suse_linux:kernel-default, p-cpe:/a:novell:suse_linux:kernel-livepatch-5_14_21-150400_24_235-default, p-cpe:/a:novell:suse_linux:kernel-obs-build, p-cpe:/a:novell:suse_linux:kernel-source, p-cpe:/a:novell:suse_linux:kernel-zfcpdump, p-cpe:/a:novell:suse_linux:ocfs2-kmp-default, p-cpe:/a:novell:suse_linux:reiserfs-kmp-default

必要な KB アイテム: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

エクスプロイトが利用可能: true

エクスプロイトの容易さ: Exploits are available

パッチ公開日: 2026/8/12

脆弱性公開日: 2021/7/21

CISA の既知の悪用された脆弱性の期限日: 2026/5/15

エクスプロイト可能

Core Impact

Metasploit (Copy Fail AF_ALG + authencesn Page-Cache Write)

参照情報

CVE: CVE-2022-4994, CVE-2023-2058, CVE-2023-53995, CVE-2025-21710, CVE-2025-54518, CVE-2026-31431, CVE-2026-31598, CVE-2026-31628, CVE-2026-31759, CVE-2026-43033, CVE-2026-46052, CVE-2026-46056, CVE-2026-46080, CVE-2026-46109, CVE-2026-46145, CVE-2026-46174, CVE-2026-46193, CVE-2026-46243, CVE-2026-46323, CVE-2026-46333, CVE-2026-52956, CVE-2026-52958, CVE-2026-52967, CVE-2026-52986, CVE-2026-53050, CVE-2026-53131, CVE-2026-53196, CVE-2026-53224, CVE-2026-53246, CVE-2026-53256, CVE-2026-53260, CVE-2026-53267, CVE-2026-53354, CVE-2026-53357, CVE-2026-53375, CVE-2026-53388, CVE-2026-53391, CVE-2026-53402, CVE-2026-63794, CVE-2026-63806, CVE-2026-63807, CVE-2026-63824, CVE-2026-63829, CVE-2026-63893, CVE-2026-63917, CVE-2026-63919, CVE-2026-63921, CVE-2026-63922, CVE-2026-63924, CVE-2026-63971, CVE-2026-63975, CVE-2026-63984, CVE-2026-63994, CVE-2026-64106, CVE-2026-64189, CVE-2026-64560, CVE-2026-64561, CVE-2026-64564, CVE-2026-64600

SuSE: SUSE-SU-2026:3593-1