{"$ref":"https://www.cert.ssi.gouv.fr/openapi.json","affected_systems":[{"description":"SUSE Linux Enterprise Server 15-SP2-BCL","product":{"name":"SUSE Linux Enterprise Server","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Linux Enterprise Server 15-SP2","product":{"name":"SUSE Linux Enterprise Server","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Linux Enterprise Storage 7","product":{"name":"N/A","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Linux Enterprise High Performance Computing 15-SP2-LTSS","product":{"name":"SUSE Linux Enterprise High Performance Computing","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Linux Enterprise High Performance Computing 15-SP2","product":{"name":"SUSE Linux Enterprise High Performance Computing","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Linux Enterprise High Performance Computing 15-SP2-ESPOS","product":{"name":"SUSE Linux Enterprise High Performance Computing","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Manager Server 4.1","product":{"name":"SUSE Manager Server","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Enterprise Storage 7","product":{"name":"N/A","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Linux Enterprise Server for SAP 15-SP2","product":{"name":"SUSE Linux Enterprise Server","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Manager Retail Branch Server 4.1","product":{"name":"SUSE Manager Retail Branch Server","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Linux Enterprise High Availability 15-SP2","product":{"name":"N/A","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Linux Enterprise Server 15-SP2-LTSS","product":{"name":"SUSE Linux Enterprise Server","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Manager Proxy 4.1","product":{"name":"SUSE Manager Proxy","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Linux Enterprise Server for SAP Applications 15-SP2","product":{"name":"SUSE Linux Enterprise Server","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Linux Enterprise Module for Live Patching 15-SP2","product":{"name":"N/A","vendor":{"name":"SUSE","scada":false}}}],"affected_systems_content":null,"content":"## Solution\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l'\u00e9diteur pour l'obtention des\ncorrectifs (cf. section Documentation).\n","cves":[{"name":"CVE-2022-29581","url":"https://www.cve.org/CVERecord?id=CVE-2022-29581"},{"name":"CVE-2022-2977","url":"https://www.cve.org/CVERecord?id=CVE-2022-2977"},{"name":"CVE-2021-4203","url":"https://www.cve.org/CVERecord?id=CVE-2021-4203"},{"name":"CVE-2022-1652","url":"https://www.cve.org/CVERecord?id=CVE-2022-1652"},{"name":"CVE-2022-2639","url":"https://www.cve.org/CVERecord?id=CVE-2022-2639"},{"name":"CVE-2022-20166","url":"https://www.cve.org/CVERecord?id=CVE-2022-20166"},{"name":"CVE-2020-36516","url":"https://www.cve.org/CVERecord?id=CVE-2020-36516"},{"name":"CVE-2016-3695","url":"https://www.cve.org/CVERecord?id=CVE-2016-3695"},{"name":"CVE-2020-27784","url":"https://www.cve.org/CVERecord?id=CVE-2020-27784"},{"name":"CVE-2022-2663","url":"https://www.cve.org/CVERecord?id=CVE-2022-2663"},{"name":"CVE-2022-32250","url":"https://www.cve.org/CVERecord?id=CVE-2022-32250"},{"name":"CVE-2022-39188","url":"https://www.cve.org/CVERecord?id=CVE-2022-39188"},{"name":"CVE-2022-1012","url":"https://www.cve.org/CVERecord?id=CVE-2022-1012"},{"name":"CVE-2022-20368","url":"https://www.cve.org/CVERecord?id=CVE-2022-20368"},{"name":"CVE-2021-4155","url":"https://www.cve.org/CVERecord?id=CVE-2021-4155"},{"name":"CVE-2022-26373","url":"https://www.cve.org/CVERecord?id=CVE-2022-26373"},{"name":"CVE-2022-2905","url":"https://www.cve.org/CVERecord?id=CVE-2022-2905"},{"name":"CVE-2022-36879","url":"https://www.cve.org/CVERecord?id=CVE-2022-36879"},{"name":"CVE-2022-2588","url":"https://www.cve.org/CVERecord?id=CVE-2022-2588"},{"name":"CVE-2022-20369","url":"https://www.cve.org/CVERecord?id=CVE-2022-20369"},{"name":"CVE-2022-3028","url":"https://www.cve.org/CVERecord?id=CVE-2022-3028"}],"links":[{"title":"Bulletin de s\u00e9curit\u00e9 SUSE du 30 septembre 2022","url":"https://www.suse.com/support/update/announcement/2022/suse-su-20223476-1/"},{"title":"Bulletin de s\u00e9curit\u00e9 SUSE du 28\u00a0septembre 2022","url":"https://www.suse.com/support/update/announcement/2022/suse-su-20223450-1/"}],"reference":"CERTFR-2022-AVI-877","revisions":[{"description":"Version initiale","revision_date":"2022-10-04T00:00:00.000000"}],"risks":[{"description":"D\u00e9ni de service"},{"description":"Contournement de la politique de s\u00e9curit\u00e9"},{"description":"Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"},{"description":"\u00c9l\u00e9vation de privil\u00e8ges"}],"summary":"De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 corrig\u00e9es dans <span\nclass=\"textit\">le noyau Linux de SUSE</span>. Elles permettent \u00e0 un\nattaquant de provoquer un contournement de la politique de s\u00e9curit\u00e9, une\n\u00e9l\u00e9vation de privil\u00e8ges, un d\u00e9ni de service et une atteinte \u00e0 la\nconfidentialit\u00e9 des donn\u00e9es.\n","title":"Multiples vuln\u00e9rabilit\u00e9s dans le noyau Linux de SUSE","vendor_advisories":[{"published_at":null,"title":"Bulletin de s\u00e9curit\u00e9 SUSE SUSE-SU-2022:3476-1 du 30 septembre 2022","url":null},{"published_at":null,"title":"Bulletin de s\u00e9curit\u00e9 SUSE SUSE-SU-2022:3450-1 du 28 septembre 2022","url":null}]}
