{"$ref":"https://www.cert.ssi.gouv.fr/openapi.json","affected_systems":[{"description":"SUSE Linux Enterprise Module for Live Patching 15-SP3","product":{"name":"N/A","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Linux Enterprise Server 15-SP2","product":{"name":"SUSE Linux Enterprise Server","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Linux Enterprise Server 12-SP3-BCL","product":{"name":"SUSE Linux Enterprise Server","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Linux Enterprise Server for SAP Applications 15-SP3","product":{"name":"SUSE Linux Enterprise Server","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Manager Retail Branch Server 4.2","product":{"name":"SUSE Manager Retail Branch Server","vendor":{"name":"SUSE","scada":false}}},{"description":"openSUSE Leap 15.3","product":{"name":"openSUSE Leap","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Manager Proxy 4.2","product":{"name":"SUSE Manager Proxy","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Linux Enterprise High Performance Computing 15-SP2","product":{"name":"SUSE Linux Enterprise High Performance Computing","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Manager Server 4.2","product":{"name":"SUSE Manager Server","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Linux Enterprise Micro 5.1","product":{"name":"SUSE Linux Enterprise Micro","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Linux Enterprise Module for Public Cloud 15-SP3","product":{"name":"N/A","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Linux Enterprise High Performance Computing 15-SP3","product":{"name":"SUSE Linux Enterprise High Performance Computing","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Linux Enterprise Storage 7.1","product":{"name":"N/A","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Linux Enterprise Module for Live Patching 15-SP4","product":{"name":"N/A","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Linux Enterprise Server for SAP Applications 15-SP4","product":{"name":"SUSE Linux Enterprise Server","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Linux Enterprise High Performance Computing 15-SP4","product":{"name":"SUSE Linux Enterprise High Performance Computing","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Linux Enterprise Server 15-SP4","product":{"name":"SUSE Linux Enterprise Server","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Linux Enterprise Server for SAP Applications 15-SP2","product":{"name":"SUSE Linux Enterprise Server","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Linux Enterprise Module for Live Patching 15-SP2","product":{"name":"N/A","vendor":{"name":"SUSE","scada":false}}},{"description":"SUSE Linux Enterprise Server 15-SP3","product":{"name":"SUSE Linux Enterprise Server","vendor":{"name":"SUSE","scada":false}}}],"affected_systems_content":null,"content":"## Solution\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l'\u00e9diteur pour l'obtention des\ncorrectifs (cf. section Documentation).\n","cves":[{"name":"CVE-2022-2977","url":"https://www.cve.org/CVERecord?id=CVE-2022-2977"},{"name":"CVE-2022-39190","url":"https://www.cve.org/CVERecord?id=CVE-2022-39190"},{"name":"CVE-2022-42720","url":"https://www.cve.org/CVERecord?id=CVE-2022-42720"},{"name":"CVE-2021-4203","url":"https://www.cve.org/CVERecord?id=CVE-2021-4203"},{"name":"CVE-2022-39189","url":"https://www.cve.org/CVERecord?id=CVE-2022-39189"},{"name":"CVE-2022-2639","url":"https://www.cve.org/CVERecord?id=CVE-2022-2639"},{"name":"CVE-2022-3239","url":"https://www.cve.org/CVERecord?id=CVE-2022-3239"},{"name":"CVE-2020-36516","url":"https://www.cve.org/CVERecord?id=CVE-2020-36516"},{"name":"CVE-2022-41218","url":"https://www.cve.org/CVERecord?id=CVE-2022-41218"},{"name":"CVE-2016-3695","url":"https://www.cve.org/CVERecord?id=CVE-2016-3695"},{"name":"CVE-2022-41849","url":"https://www.cve.org/CVERecord?id=CVE-2022-41849"},{"name":"CVE-2020-27784","url":"https://www.cve.org/CVERecord?id=CVE-2020-27784"},{"name":"CVE-2022-41222","url":"https://www.cve.org/CVERecord?id=CVE-2022-41222"},{"name":"CVE-2022-2663","url":"https://www.cve.org/CVERecord?id=CVE-2022-2663"},{"name":"CVE-2022-2586","url":"https://www.cve.org/CVERecord?id=CVE-2022-2586"},{"name":"CVE-2022-42719","url":"https://www.cve.org/CVERecord?id=CVE-2022-42719"},{"name":"CVE-2022-41848","url":"https://www.cve.org/CVERecord?id=CVE-2022-41848"},{"name":"CVE-2022-39188","url":"https://www.cve.org/CVERecord?id=CVE-2022-39188"},{"name":"CVE-2022-42721","url":"https://www.cve.org/CVERecord?id=CVE-2022-42721"},{"name":"CVE-2022-20368","url":"https://www.cve.org/CVERecord?id=CVE-2022-20368"},{"name":"CVE-2021-4155","url":"https://www.cve.org/CVERecord?id=CVE-2021-4155"},{"name":"CVE-2022-26373","url":"https://www.cve.org/CVERecord?id=CVE-2022-26373"},{"name":"CVE-2022-2905","url":"https://www.cve.org/CVERecord?id=CVE-2022-2905"},{"name":"CVE-2022-3303","url":"https://www.cve.org/CVERecord?id=CVE-2022-3303"},{"name":"CVE-2022-36879","url":"https://www.cve.org/CVERecord?id=CVE-2022-36879"},{"name":"CVE-2020-16119","url":"https://www.cve.org/CVERecord?id=CVE-2020-16119"},{"name":"CVE-2022-2588","url":"https://www.cve.org/CVERecord?id=CVE-2022-2588"},{"name":"CVE-2021-39698","url":"https://www.cve.org/CVERecord?id=CVE-2021-39698"},{"name":"CVE-2022-20369","url":"https://www.cve.org/CVERecord?id=CVE-2022-20369"},{"name":"CVE-2022-2503","url":"https://www.cve.org/CVERecord?id=CVE-2022-2503"},{"name":"CVE-2022-3028","url":"https://www.cve.org/CVERecord?id=CVE-2022-3028"},{"name":"CVE-2022-41674","url":"https://www.cve.org/CVERecord?id=CVE-2022-41674"}],"links":[{"title":"Bulletin de s\u00e9curit\u00e9 SUSE du 18 octobre. 2022","url":"https://www.suse.com/support/update/announcement/2022/suse-su-20223648-1/"},{"title":"Bulletin de s\u00e9curit\u00e9 SUSE du 18 octobre 2022","url":"https://www.suse.com/support/update/announcement/2022/suse-su-20223628-1/"},{"title":"Bulletin de s\u00e9curit\u00e9 SUSE du 17 octobre 2022","url":"https://www.suse.com/support/update/announcement/2022/suse-su-20223607-1/"},{"title":"Bulletin de s\u00e9curit\u00e9 SUSE du 17 octobre 2022","url":"https://www.suse.com/support/update/announcement/2022/suse-su-20223599-1/"},{"title":"Bulletin de s\u00e9curit\u00e9 SUSE du 17 octobre 2022","url":"https://www.suse.com/support/update/announcement/2022/suse-su-20223606-1/"},{"title":"Bulletin de s\u00e9curit\u00e9 SUSE du 17 octobre 2022","url":"https://www.suse.com/support/update/announcement/2022/suse-su-20223605-1/"},{"title":"Bulletin de s\u00e9curit\u00e9 SUSE du 17 octobre 2022","url":"https://www.suse.com/support/update/announcement/2022/suse-su-20223601-1/"},{"title":"Bulletin de s\u00e9curit\u00e9 SUSE du 18 octobre 2022","url":"https://www.suse.com/support/update/announcement/2022/suse-su-20223609-1/"}],"reference":"CERTFR-2022-AVI-925","revisions":[{"description":"Version initiale","revision_date":"2022-10-19T00:00:00.000000"}],"risks":[{"description":"D\u00e9ni de service \u00e0 distance"},{"description":"Atteinte \u00e0 l'int\u00e9grit\u00e9 des donn\u00e9es"},{"description":"Ex\u00e9cution de code arbitraire"},{"description":"Non sp\u00e9cifi\u00e9 par l'\u00e9diteur"},{"description":"Contournement de la politique de s\u00e9curit\u00e9"},{"description":"Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"},{"description":"\u00c9l\u00e9vation de privil\u00e8ges"}],"summary":"De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 corrig\u00e9es dans <span\nclass=\"textit\">le noyau Linux de SUSE</span>. Certaines d'entre elles\npermettent \u00e0 un attaquant de provoquer une ex\u00e9cution de code arbitraire,\nun d\u00e9ni de service \u00e0 distance et un contournement de la politique de\ns\u00e9curit\u00e9.\n","title":"Multiples vuln\u00e9rabilit\u00e9s dans le noyau Linux de SUSE","vendor_advisories":[{"published_at":null,"title":"Bulletin de s\u00e9curit\u00e9 SUSE SUSE-SU-2022:3609-1 du 17 octobre 2022","url":null},{"published_at":null,"title":"Bulletin de s\u00e9curit\u00e9 SUSE SUSE-SU-2022:3605-1 du 17 octobre 2022","url":null},{"published_at":null,"title":"Bulletin de s\u00e9curit\u00e9 SUSE SUSE-SU-2022:3648-1 du 18 octobre 2022","url":null},{"published_at":null,"title":"Bulletin de s\u00e9curit\u00e9 SUSE SUSE-SU-2022:3606-1 du 17 octobre 2022","url":null},{"published_at":null,"title":"Bulletin de s\u00e9curit\u00e9 SUSE SUSE-SU-2022:3607-1 du 17 octobre 2022","url":null},{"published_at":null,"title":"Bulletin de s\u00e9curit\u00e9 SUSE SUSE-SU-2022:3599-1 du 17 octobre 2022","url":null},{"published_at":null,"title":"Bulletin de s\u00e9curit\u00e9 SUSE SUSE-SU-2022:3628-1 du 18 octobre 2022","url":null}]}
