Re: SUSE-SU-2024:2980-1: important: Security update for kernel-firmware
Hallo, Security-Mails kommen hier häufig mit mehreren Tagen Verzögerung an. Hier ein aktuelles Beispiel mit 7 Tagen Verzögerung. Eine Beipielmail mit allen Headern im Anhang. Darin erkennt man, dass die Verzögerung auf einer localhost-Weiterleitung auf dem Host mailman3.infra.opensuse.org passiert. Weiterhin sind in den Headern gleich 4 DKIM-Signaturen, von denen alle beim Empfang im Internet fehlschlagen. Am 20.08.24 um 14:30 schrieb OPENSUSE-SECURITY-UPDATES:
Security update for kernel-firmware
Announcement ID: SUSE-SU-2024:2980-1 Rating: important
Beste Grüße Kevin Ivory -- SerNet GmbH, Bahnhofsallee 1b, 37081 Göttingen phone: 0551-370000-0, mailto:kontakt@sernet.de Gesch.F.: Dr. Johannes Loxen und Reinhild Jung AG Göttingen: HR-B 2816 - http://www.sernet.de Datenschutz: https://www.sernet.de/datenschutz
Hi, (reply in english) Currently all mails land in the moderation queue, so there is delay until we approve them (due to vacation mostly). I need to fix that they do not land in the mod queue. I can't say with DKIM, I would need to dig deeper into it. Ciao, Marcus On Tue, Aug 27, 2024 at 03:19:13PM +0200, Kevin Ivory wrote:
Hallo,
Security-Mails kommen hier häufig mit mehreren Tagen Verzögerung an. Hier ein aktuelles Beispiel mit 7 Tagen Verzögerung. Eine Beipielmail mit allen Headern im Anhang. Darin erkennt man, dass die Verzögerung auf einer localhost-Weiterleitung auf dem Host mailman3.infra.opensuse.org passiert.
Weiterhin sind in den Headern gleich 4 DKIM-Signaturen, von denen alle beim Empfang im Internet fehlschlagen.
Am 20.08.24 um 14:30 schrieb OPENSUSE-SECURITY-UPDATES:
Security update for kernel-firmware
Announcement ID: SUSE-SU-2024:2980-1 Rating: important
Beste Grüße Kevin Ivory -- SerNet GmbH, Bahnhofsallee 1b, 37081 Göttingen phone: 0551-370000-0, mailto:kontakt@sernet.de Gesch.F.: Dr. Johannes Loxen und Reinhild Jung AG Göttingen: HR-B 2816 - http://www.sernet.de Datenschutz: https://www.sernet.de/datenschutz
Date: Tue, 20 Aug 2024 12:30:34 -0000 From: OPENSUSE-SECURITY-UPDATES <null@suse.de> To: security-announce@lists.opensuse.org Subject: SUSE-SU-2024:2980-1: important: Security update for kernel-firmware
# Security update for kernel-firmware
Announcement ID: SUSE-SU-2024:2980-1 Rating: important References:
* bsc#1229069
Cross-References:
* CVE-2023-31315
CVSS scores:
* CVE-2023-31315 ( SUSE ): 7.5 CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H
Affected Products:
* openSUSE Leap 15.4 * SUSE Linux Enterprise Desktop 15 SP4 LTSS 15-SP4 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Micro for Rancher 5.3 * SUSE Linux Enterprise Micro for Rancher 5.4 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP4 LTSS 15-SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Manager Proxy 4.3 * SUSE Manager Retail Branch Server 4.3 * SUSE Manager Server 4.3
An update that solves one vulnerability can now be installed.
## Description:
This update for kernel-firmware fixes the following issues:
CVE-2023-31315: Fixed validation in a model specific register (MSR) that lead to modification of SMM configuration by malicious program with ring0 access (bsc#1229069)
## Special Instructions and Notes:
* Please reboot the system after installing this update.
## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product:
* openSUSE Leap 15.4 zypper in -t patch SUSE-2024-2980=1
* SUSE Linux Enterprise Micro for Rancher 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2024-2980=1
* SUSE Linux Enterprise Micro 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2024-2980=1
* SUSE Linux Enterprise Micro for Rancher 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2024-2980=1
* SUSE Linux Enterprise Micro 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2024-2980=1
* SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-ESPOS-2024-2980=1
* SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-LTSS-2024-2980=1
* SUSE Linux Enterprise Desktop 15 SP4 LTSS 15-SP4 zypper in -t patch SUSE-SLE-Product-SLED-15-SP4-LTSS-2024-2980=1
* SUSE Linux Enterprise Server 15 SP4 LTSS 15-SP4 zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2024-2980=1
* SUSE Linux Enterprise Server for SAP Applications 15 SP4 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP4-2024-2980=1
* SUSE Manager Proxy 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Proxy-4.3-2024-2980=1
* SUSE Manager Retail Branch Server 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Retail-Branch- Server-4.3-2024-2980=1
* SUSE Manager Server 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Server-4.3-2024-2980=1
## Package List:
* openSUSE Leap 15.4 (noarch) * kernel-firmware-ath10k-20220509-150400.4.28.1 * kernel-firmware-bnx2-20220509-150400.4.28.1 * kernel-firmware-brcm-20220509-150400.4.28.1 * kernel-firmware-sound-20220509-150400.4.28.1 * kernel-firmware-chelsio-20220509-150400.4.28.1 * kernel-firmware-20220509-150400.4.28.1 * kernel-firmware-mellanox-20220509-150400.4.28.1 * kernel-firmware-platform-20220509-150400.4.28.1 * kernel-firmware-i915-20220509-150400.4.28.1 * kernel-firmware-liquidio-20220509-150400.4.28.1 * kernel-firmware-all-20220509-150400.4.28.1 * kernel-firmware-amdgpu-20220509-150400.4.28.1 * kernel-firmware-intel-20220509-150400.4.28.1 * kernel-firmware-usb-network-20220509-150400.4.28.1 * kernel-firmware-ti-20220509-150400.4.28.1 * kernel-firmware-nfp-20220509-150400.4.28.1 * kernel-firmware-bluetooth-20220509-150400.4.28.1 * kernel-firmware-iwlwifi-20220509-150400.4.28.1 * kernel-firmware-marvell-20220509-150400.4.28.1 * kernel-firmware-nvidia-20220509-150400.4.28.1 * kernel-firmware-prestera-20220509-150400.4.28.1 * kernel-firmware-radeon-20220509-150400.4.28.1 * kernel-firmware-atheros-20220509-150400.4.28.1 * kernel-firmware-media-20220509-150400.4.28.1 * kernel-firmware-qlogic-20220509-150400.4.28.1 * kernel-firmware-ath11k-20220509-150400.4.28.1 * kernel-firmware-mwifiex-20220509-150400.4.28.1 * kernel-firmware-network-20220509-150400.4.28.1 * kernel-firmware-dpaa2-20220509-150400.4.28.1 * ucode-amd-20220509-150400.4.28.1 * kernel-firmware-ueagle-20220509-150400.4.28.1 * kernel-firmware-mediatek-20220509-150400.4.28.1 * kernel-firmware-serial-20220509-150400.4.28.1 * kernel-firmware-realtek-20220509-150400.4.28.1 * kernel-firmware-qcom-20220509-150400.4.28.1 * SUSE Linux Enterprise Micro for Rancher 5.3 (noarch) * kernel-firmware-ath10k-20220509-150400.4.28.1 * kernel-firmware-bnx2-20220509-150400.4.28.1 * kernel-firmware-brcm-20220509-150400.4.28.1 * kernel-firmware-sound-20220509-150400.4.28.1 * kernel-firmware-chelsio-20220509-150400.4.28.1 * kernel-firmware-mellanox-20220509-150400.4.28.1 * kernel-firmware-platform-20220509-150400.4.28.1 * kernel-firmware-i915-20220509-150400.4.28.1 * kernel-firmware-liquidio-20220509-150400.4.28.1 * kernel-firmware-all-20220509-150400.4.28.1 * kernel-firmware-amdgpu-20220509-150400.4.28.1 * kernel-firmware-intel-20220509-150400.4.28.1 * kernel-firmware-usb-network-20220509-150400.4.28.1 * kernel-firmware-ti-20220509-150400.4.28.1 * kernel-firmware-nfp-20220509-150400.4.28.1 * kernel-firmware-bluetooth-20220509-150400.4.28.1 * kernel-firmware-iwlwifi-20220509-150400.4.28.1 * kernel-firmware-marvell-20220509-150400.4.28.1 * kernel-firmware-nvidia-20220509-150400.4.28.1 * kernel-firmware-prestera-20220509-150400.4.28.1 * kernel-firmware-radeon-20220509-150400.4.28.1 * kernel-firmware-atheros-20220509-150400.4.28.1 * kernel-firmware-media-20220509-150400.4.28.1 * kernel-firmware-qlogic-20220509-150400.4.28.1 * kernel-firmware-ath11k-20220509-150400.4.28.1 * kernel-firmware-mwifiex-20220509-150400.4.28.1 * kernel-firmware-network-20220509-150400.4.28.1 * kernel-firmware-dpaa2-20220509-150400.4.28.1 * ucode-amd-20220509-150400.4.28.1 * kernel-firmware-ueagle-20220509-150400.4.28.1 * kernel-firmware-mediatek-20220509-150400.4.28.1 * kernel-firmware-serial-20220509-150400.4.28.1 * kernel-firmware-realtek-20220509-150400.4.28.1 * kernel-firmware-qcom-20220509-150400.4.28.1 * SUSE Linux Enterprise Micro 5.3 (noarch) * kernel-firmware-ath10k-20220509-150400.4.28.1 * kernel-firmware-bnx2-20220509-150400.4.28.1 * kernel-firmware-brcm-20220509-150400.4.28.1 * kernel-firmware-sound-20220509-150400.4.28.1 * kernel-firmware-chelsio-20220509-150400.4.28.1 * kernel-firmware-mellanox-20220509-150400.4.28.1 * kernel-firmware-platform-20220509-150400.4.28.1 * kernel-firmware-i915-20220509-150400.4.28.1 * kernel-firmware-liquidio-20220509-150400.4.28.1 * kernel-firmware-all-20220509-150400.4.28.1 * kernel-firmware-amdgpu-20220509-150400.4.28.1 * kernel-firmware-intel-20220509-150400.4.28.1 * kernel-firmware-usb-network-20220509-150400.4.28.1 * kernel-firmware-ti-20220509-150400.4.28.1 * kernel-firmware-nfp-20220509-150400.4.28.1 * kernel-firmware-bluetooth-20220509-150400.4.28.1 * kernel-firmware-iwlwifi-20220509-150400.4.28.1 * kernel-firmware-marvell-20220509-150400.4.28.1 * kernel-firmware-nvidia-20220509-150400.4.28.1 * kernel-firmware-prestera-20220509-150400.4.28.1 * kernel-firmware-radeon-20220509-150400.4.28.1 * kernel-firmware-atheros-20220509-150400.4.28.1 * kernel-firmware-media-20220509-150400.4.28.1 * kernel-firmware-qlogic-20220509-150400.4.28.1 * kernel-firmware-ath11k-20220509-150400.4.28.1 * kernel-firmware-mwifiex-20220509-150400.4.28.1 * kernel-firmware-network-20220509-150400.4.28.1 * kernel-firmware-dpaa2-20220509-150400.4.28.1 * ucode-amd-20220509-150400.4.28.1 * kernel-firmware-ueagle-20220509-150400.4.28.1 * kernel-firmware-mediatek-20220509-150400.4.28.1 * kernel-firmware-serial-20220509-150400.4.28.1 * kernel-firmware-realtek-20220509-150400.4.28.1 * kernel-firmware-qcom-20220509-150400.4.28.1 * SUSE Linux Enterprise Micro for Rancher 5.4 (noarch) * kernel-firmware-ath10k-20220509-150400.4.28.1 * kernel-firmware-bnx2-20220509-150400.4.28.1 * kernel-firmware-brcm-20220509-150400.4.28.1 * kernel-firmware-sound-20220509-150400.4.28.1 * kernel-firmware-chelsio-20220509-150400.4.28.1 * kernel-firmware-mellanox-20220509-150400.4.28.1 * kernel-firmware-platform-20220509-150400.4.28.1 * kernel-firmware-i915-20220509-150400.4.28.1 * kernel-firmware-liquidio-20220509-150400.4.28.1 * kernel-firmware-all-20220509-150400.4.28.1 * kernel-firmware-amdgpu-20220509-150400.4.28.1 * kernel-firmware-intel-20220509-150400.4.28.1 * kernel-firmware-usb-network-20220509-150400.4.28.1 * kernel-firmware-ti-20220509-150400.4.28.1 * kernel-firmware-nfp-20220509-150400.4.28.1 * kernel-firmware-bluetooth-20220509-150400.4.28.1 * kernel-firmware-iwlwifi-20220509-150400.4.28.1 * kernel-firmware-marvell-20220509-150400.4.28.1 * kernel-firmware-nvidia-20220509-150400.4.28.1 * kernel-firmware-prestera-20220509-150400.4.28.1 * kernel-firmware-radeon-20220509-150400.4.28.1 * kernel-firmware-atheros-20220509-150400.4.28.1 * kernel-firmware-media-20220509-150400.4.28.1 * kernel-firmware-qlogic-20220509-150400.4.28.1 * kernel-firmware-ath11k-20220509-150400.4.28.1 * kernel-firmware-mwifiex-20220509-150400.4.28.1 * kernel-firmware-network-20220509-150400.4.28.1 * kernel-firmware-dpaa2-20220509-150400.4.28.1 * ucode-amd-20220509-150400.4.28.1 * kernel-firmware-ueagle-20220509-150400.4.28.1 * kernel-firmware-mediatek-20220509-150400.4.28.1 * kernel-firmware-serial-20220509-150400.4.28.1 * kernel-firmware-realtek-20220509-150400.4.28.1 * kernel-firmware-qcom-20220509-150400.4.28.1 * SUSE Linux Enterprise Micro 5.4 (noarch) * kernel-firmware-ath10k-20220509-150400.4.28.1 * kernel-firmware-bnx2-20220509-150400.4.28.1 * kernel-firmware-brcm-20220509-150400.4.28.1 * kernel-firmware-sound-20220509-150400.4.28.1 * kernel-firmware-chelsio-20220509-150400.4.28.1 * kernel-firmware-mellanox-20220509-150400.4.28.1 * kernel-firmware-platform-20220509-150400.4.28.1 * kernel-firmware-i915-20220509-150400.4.28.1 * kernel-firmware-liquidio-20220509-150400.4.28.1 * kernel-firmware-all-20220509-150400.4.28.1 * kernel-firmware-amdgpu-20220509-150400.4.28.1 * kernel-firmware-intel-20220509-150400.4.28.1 * kernel-firmware-usb-network-20220509-150400.4.28.1 * kernel-firmware-ti-20220509-150400.4.28.1 * kernel-firmware-nfp-20220509-150400.4.28.1 * kernel-firmware-bluetooth-20220509-150400.4.28.1 * kernel-firmware-iwlwifi-20220509-150400.4.28.1 * kernel-firmware-marvell-20220509-150400.4.28.1 * kernel-firmware-nvidia-20220509-150400.4.28.1 * kernel-firmware-prestera-20220509-150400.4.28.1 * kernel-firmware-radeon-20220509-150400.4.28.1 * kernel-firmware-atheros-20220509-150400.4.28.1 * kernel-firmware-media-20220509-150400.4.28.1 * kernel-firmware-qlogic-20220509-150400.4.28.1 * kernel-firmware-ath11k-20220509-150400.4.28.1 * kernel-firmware-mwifiex-20220509-150400.4.28.1 * kernel-firmware-network-20220509-150400.4.28.1 * kernel-firmware-dpaa2-20220509-150400.4.28.1 * ucode-amd-20220509-150400.4.28.1 * kernel-firmware-ueagle-20220509-150400.4.28.1 * kernel-firmware-mediatek-20220509-150400.4.28.1 * kernel-firmware-serial-20220509-150400.4.28.1 * kernel-firmware-realtek-20220509-150400.4.28.1 * kernel-firmware-qcom-20220509-150400.4.28.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (noarch) * kernel-firmware-ath10k-20220509-150400.4.28.1 * kernel-firmware-bnx2-20220509-150400.4.28.1 * kernel-firmware-brcm-20220509-150400.4.28.1 * kernel-firmware-sound-20220509-150400.4.28.1 * kernel-firmware-chelsio-20220509-150400.4.28.1 * kernel-firmware-mellanox-20220509-150400.4.28.1 * kernel-firmware-platform-20220509-150400.4.28.1 * kernel-firmware-i915-20220509-150400.4.28.1 * kernel-firmware-liquidio-20220509-150400.4.28.1 * kernel-firmware-all-20220509-150400.4.28.1 * kernel-firmware-amdgpu-20220509-150400.4.28.1 * kernel-firmware-intel-20220509-150400.4.28.1 * kernel-firmware-usb-network-20220509-150400.4.28.1 * kernel-firmware-ti-20220509-150400.4.28.1 * kernel-firmware-nfp-20220509-150400.4.28.1 * kernel-firmware-bluetooth-20220509-150400.4.28.1 * kernel-firmware-iwlwifi-20220509-150400.4.28.1 * kernel-firmware-marvell-20220509-150400.4.28.1 * kernel-firmware-nvidia-20220509-150400.4.28.1 * kernel-firmware-prestera-20220509-150400.4.28.1 * kernel-firmware-radeon-20220509-150400.4.28.1 * kernel-firmware-atheros-20220509-150400.4.28.1 * kernel-firmware-media-20220509-150400.4.28.1 * kernel-firmware-qlogic-20220509-150400.4.28.1 * kernel-firmware-ath11k-20220509-150400.4.28.1 * kernel-firmware-mwifiex-20220509-150400.4.28.1 * kernel-firmware-network-20220509-150400.4.28.1 * kernel-firmware-dpaa2-20220509-150400.4.28.1 * ucode-amd-20220509-150400.4.28.1 * kernel-firmware-ueagle-20220509-150400.4.28.1 * kernel-firmware-mediatek-20220509-150400.4.28.1 * kernel-firmware-serial-20220509-150400.4.28.1 * kernel-firmware-realtek-20220509-150400.4.28.1 * kernel-firmware-qcom-20220509-150400.4.28.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (noarch) * kernel-firmware-ath10k-20220509-150400.4.28.1 * kernel-firmware-bnx2-20220509-150400.4.28.1 * kernel-firmware-brcm-20220509-150400.4.28.1 * kernel-firmware-sound-20220509-150400.4.28.1 * kernel-firmware-chelsio-20220509-150400.4.28.1 * kernel-firmware-mellanox-20220509-150400.4.28.1 * kernel-firmware-platform-20220509-150400.4.28.1 * kernel-firmware-i915-20220509-150400.4.28.1 * kernel-firmware-liquidio-20220509-150400.4.28.1 * kernel-firmware-all-20220509-150400.4.28.1 * kernel-firmware-amdgpu-20220509-150400.4.28.1 * kernel-firmware-intel-20220509-150400.4.28.1 * kernel-firmware-usb-network-20220509-150400.4.28.1 * kernel-firmware-ti-20220509-150400.4.28.1 * kernel-firmware-nfp-20220509-150400.4.28.1 * kernel-firmware-bluetooth-20220509-150400.4.28.1 * kernel-firmware-iwlwifi-20220509-150400.4.28.1 * kernel-firmware-marvell-20220509-150400.4.28.1 * kernel-firmware-nvidia-20220509-150400.4.28.1 * kernel-firmware-prestera-20220509-150400.4.28.1 * kernel-firmware-radeon-20220509-150400.4.28.1 * kernel-firmware-atheros-20220509-150400.4.28.1 * kernel-firmware-media-20220509-150400.4.28.1 * kernel-firmware-qlogic-20220509-150400.4.28.1 * kernel-firmware-ath11k-20220509-150400.4.28.1 * kernel-firmware-mwifiex-20220509-150400.4.28.1 * kernel-firmware-network-20220509-150400.4.28.1 * kernel-firmware-dpaa2-20220509-150400.4.28.1 * ucode-amd-20220509-150400.4.28.1 * kernel-firmware-ueagle-20220509-150400.4.28.1 * kernel-firmware-mediatek-20220509-150400.4.28.1 * kernel-firmware-serial-20220509-150400.4.28.1 * kernel-firmware-realtek-20220509-150400.4.28.1 * kernel-firmware-qcom-20220509-150400.4.28.1 * SUSE Linux Enterprise Desktop 15 SP4 LTSS 15-SP4 (noarch) * kernel-firmware-ath10k-20220509-150400.4.28.1 * kernel-firmware-bnx2-20220509-150400.4.28.1 * kernel-firmware-brcm-20220509-150400.4.28.1 * kernel-firmware-sound-20220509-150400.4.28.1 * kernel-firmware-chelsio-20220509-150400.4.28.1 * kernel-firmware-mellanox-20220509-150400.4.28.1 * kernel-firmware-platform-20220509-150400.4.28.1 * kernel-firmware-i915-20220509-150400.4.28.1 * kernel-firmware-liquidio-20220509-150400.4.28.1 * kernel-firmware-all-20220509-150400.4.28.1 * kernel-firmware-amdgpu-20220509-150400.4.28.1 * kernel-firmware-intel-20220509-150400.4.28.1 * kernel-firmware-usb-network-20220509-150400.4.28.1 * kernel-firmware-ti-20220509-150400.4.28.1 * kernel-firmware-nfp-20220509-150400.4.28.1 * kernel-firmware-bluetooth-20220509-150400.4.28.1 * kernel-firmware-iwlwifi-20220509-150400.4.28.1 * kernel-firmware-marvell-20220509-150400.4.28.1 * kernel-firmware-nvidia-20220509-150400.4.28.1 * kernel-firmware-prestera-20220509-150400.4.28.1 * kernel-firmware-radeon-20220509-150400.4.28.1 * kernel-firmware-atheros-20220509-150400.4.28.1 * kernel-firmware-media-20220509-150400.4.28.1 * kernel-firmware-qlogic-20220509-150400.4.28.1 * kernel-firmware-ath11k-20220509-150400.4.28.1 * kernel-firmware-mwifiex-20220509-150400.4.28.1 * kernel-firmware-network-20220509-150400.4.28.1 * kernel-firmware-dpaa2-20220509-150400.4.28.1 * ucode-amd-20220509-150400.4.28.1 * kernel-firmware-ueagle-20220509-150400.4.28.1 * kernel-firmware-mediatek-20220509-150400.4.28.1 * kernel-firmware-serial-20220509-150400.4.28.1 * kernel-firmware-realtek-20220509-150400.4.28.1 * kernel-firmware-qcom-20220509-150400.4.28.1 * SUSE Linux Enterprise Server 15 SP4 LTSS 15-SP4 (noarch) * kernel-firmware-ath10k-20220509-150400.4.28.1 * kernel-firmware-bnx2-20220509-150400.4.28.1 * kernel-firmware-brcm-20220509-150400.4.28.1 * kernel-firmware-sound-20220509-150400.4.28.1 * kernel-firmware-chelsio-20220509-150400.4.28.1 * kernel-firmware-mellanox-20220509-150400.4.28.1 * kernel-firmware-platform-20220509-150400.4.28.1 * kernel-firmware-i915-20220509-150400.4.28.1 * kernel-firmware-liquidio-20220509-150400.4.28.1 * kernel-firmware-all-20220509-150400.4.28.1 * kernel-firmware-amdgpu-20220509-150400.4.28.1 * kernel-firmware-intel-20220509-150400.4.28.1 * kernel-firmware-usb-network-20220509-150400.4.28.1 * kernel-firmware-ti-20220509-150400.4.28.1 * kernel-firmware-nfp-20220509-150400.4.28.1 * kernel-firmware-bluetooth-20220509-150400.4.28.1 * kernel-firmware-iwlwifi-20220509-150400.4.28.1 * kernel-firmware-marvell-20220509-150400.4.28.1 * kernel-firmware-nvidia-20220509-150400.4.28.1 * kernel-firmware-prestera-20220509-150400.4.28.1 * kernel-firmware-radeon-20220509-150400.4.28.1 * kernel-firmware-atheros-20220509-150400.4.28.1 * kernel-firmware-media-20220509-150400.4.28.1 * kernel-firmware-qlogic-20220509-150400.4.28.1 * kernel-firmware-ath11k-20220509-150400.4.28.1 * kernel-firmware-mwifiex-20220509-150400.4.28.1 * kernel-firmware-network-20220509-150400.4.28.1 * kernel-firmware-dpaa2-20220509-150400.4.28.1 * ucode-amd-20220509-150400.4.28.1 * kernel-firmware-ueagle-20220509-150400.4.28.1 * kernel-firmware-mediatek-20220509-150400.4.28.1 * kernel-firmware-serial-20220509-150400.4.28.1 * kernel-firmware-realtek-20220509-150400.4.28.1 * kernel-firmware-qcom-20220509-150400.4.28.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (noarch) * kernel-firmware-ath10k-20220509-150400.4.28.1 * kernel-firmware-bnx2-20220509-150400.4.28.1 * kernel-firmware-brcm-20220509-150400.4.28.1 * kernel-firmware-sound-20220509-150400.4.28.1 * kernel-firmware-chelsio-20220509-150400.4.28.1 * kernel-firmware-mellanox-20220509-150400.4.28.1 * kernel-firmware-platform-20220509-150400.4.28.1 * kernel-firmware-i915-20220509-150400.4.28.1 * kernel-firmware-liquidio-20220509-150400.4.28.1 * kernel-firmware-all-20220509-150400.4.28.1 * kernel-firmware-amdgpu-20220509-150400.4.28.1 * kernel-firmware-intel-20220509-150400.4.28.1 * kernel-firmware-usb-network-20220509-150400.4.28.1 * kernel-firmware-ti-20220509-150400.4.28.1 * kernel-firmware-nfp-20220509-150400.4.28.1 * kernel-firmware-bluetooth-20220509-150400.4.28.1 * kernel-firmware-iwlwifi-20220509-150400.4.28.1 * kernel-firmware-marvell-20220509-150400.4.28.1 * kernel-firmware-nvidia-20220509-150400.4.28.1 * kernel-firmware-prestera-20220509-150400.4.28.1 * kernel-firmware-radeon-20220509-150400.4.28.1 * kernel-firmware-atheros-20220509-150400.4.28.1 * kernel-firmware-media-20220509-150400.4.28.1 * kernel-firmware-qlogic-20220509-150400.4.28.1 * kernel-firmware-ath11k-20220509-150400.4.28.1 * kernel-firmware-mwifiex-20220509-150400.4.28.1 * kernel-firmware-network-20220509-150400.4.28.1 * kernel-firmware-dpaa2-20220509-150400.4.28.1 * ucode-amd-20220509-150400.4.28.1 * kernel-firmware-ueagle-20220509-150400.4.28.1 * kernel-firmware-mediatek-20220509-150400.4.28.1 * kernel-firmware-serial-20220509-150400.4.28.1 * kernel-firmware-realtek-20220509-150400.4.28.1 * kernel-firmware-qcom-20220509-150400.4.28.1 * SUSE Manager Proxy 4.3 (noarch) * kernel-firmware-ath10k-20220509-150400.4.28.1 * kernel-firmware-bnx2-20220509-150400.4.28.1 * kernel-firmware-brcm-20220509-150400.4.28.1 * kernel-firmware-sound-20220509-150400.4.28.1 * kernel-firmware-chelsio-20220509-150400.4.28.1 * kernel-firmware-mellanox-20220509-150400.4.28.1 * kernel-firmware-platform-20220509-150400.4.28.1 * kernel-firmware-i915-20220509-150400.4.28.1 * kernel-firmware-liquidio-20220509-150400.4.28.1 * kernel-firmware-all-20220509-150400.4.28.1 * kernel-firmware-amdgpu-20220509-150400.4.28.1 * kernel-firmware-intel-20220509-150400.4.28.1 * kernel-firmware-usb-network-20220509-150400.4.28.1 * kernel-firmware-ti-20220509-150400.4.28.1 * kernel-firmware-nfp-20220509-150400.4.28.1 * kernel-firmware-bluetooth-20220509-150400.4.28.1 * kernel-firmware-iwlwifi-20220509-150400.4.28.1 * kernel-firmware-marvell-20220509-150400.4.28.1 * kernel-firmware-nvidia-20220509-150400.4.28.1 * kernel-firmware-prestera-20220509-150400.4.28.1 * kernel-firmware-radeon-20220509-150400.4.28.1 * kernel-firmware-atheros-20220509-150400.4.28.1 * kernel-firmware-media-20220509-150400.4.28.1 * kernel-firmware-qlogic-20220509-150400.4.28.1 * kernel-firmware-ath11k-20220509-150400.4.28.1 * kernel-firmware-mwifiex-20220509-150400.4.28.1 * kernel-firmware-network-20220509-150400.4.28.1 * kernel-firmware-dpaa2-20220509-150400.4.28.1 * ucode-amd-20220509-150400.4.28.1 * kernel-firmware-ueagle-20220509-150400.4.28.1 * kernel-firmware-mediatek-20220509-150400.4.28.1 * kernel-firmware-serial-20220509-150400.4.28.1 * kernel-firmware-realtek-20220509-150400.4.28.1 * kernel-firmware-qcom-20220509-150400.4.28.1 * SUSE Manager Retail Branch Server 4.3 (noarch) * kernel-firmware-ath10k-20220509-150400.4.28.1 * kernel-firmware-bnx2-20220509-150400.4.28.1 * kernel-firmware-brcm-20220509-150400.4.28.1 * kernel-firmware-sound-20220509-150400.4.28.1 * kernel-firmware-chelsio-20220509-150400.4.28.1 * kernel-firmware-mellanox-20220509-150400.4.28.1 * kernel-firmware-platform-20220509-150400.4.28.1 * kernel-firmware-i915-20220509-150400.4.28.1 * kernel-firmware-liquidio-20220509-150400.4.28.1 * kernel-firmware-all-20220509-150400.4.28.1 * kernel-firmware-amdgpu-20220509-150400.4.28.1 * kernel-firmware-intel-20220509-150400.4.28.1 * kernel-firmware-usb-network-20220509-150400.4.28.1 * kernel-firmware-ti-20220509-150400.4.28.1 * kernel-firmware-nfp-20220509-150400.4.28.1 * kernel-firmware-bluetooth-20220509-150400.4.28.1 * kernel-firmware-iwlwifi-20220509-150400.4.28.1 * kernel-firmware-marvell-20220509-150400.4.28.1 * kernel-firmware-nvidia-20220509-150400.4.28.1 * kernel-firmware-prestera-20220509-150400.4.28.1 * kernel-firmware-radeon-20220509-150400.4.28.1 * kernel-firmware-atheros-20220509-150400.4.28.1 * kernel-firmware-media-20220509-150400.4.28.1 * kernel-firmware-qlogic-20220509-150400.4.28.1 * kernel-firmware-ath11k-20220509-150400.4.28.1 * kernel-firmware-mwifiex-20220509-150400.4.28.1 * kernel-firmware-network-20220509-150400.4.28.1 * kernel-firmware-dpaa2-20220509-150400.4.28.1 * ucode-amd-20220509-150400.4.28.1 * kernel-firmware-ueagle-20220509-150400.4.28.1 * kernel-firmware-mediatek-20220509-150400.4.28.1 * kernel-firmware-serial-20220509-150400.4.28.1 * kernel-firmware-realtek-20220509-150400.4.28.1 * kernel-firmware-qcom-20220509-150400.4.28.1 * SUSE Manager Server 4.3 (noarch) * kernel-firmware-ath10k-20220509-150400.4.28.1 * kernel-firmware-bnx2-20220509-150400.4.28.1 * kernel-firmware-brcm-20220509-150400.4.28.1 * kernel-firmware-sound-20220509-150400.4.28.1 * kernel-firmware-chelsio-20220509-150400.4.28.1 * kernel-firmware-mellanox-20220509-150400.4.28.1 * kernel-firmware-platform-20220509-150400.4.28.1 * kernel-firmware-i915-20220509-150400.4.28.1 * kernel-firmware-liquidio-20220509-150400.4.28.1 * kernel-firmware-all-20220509-150400.4.28.1 * kernel-firmware-amdgpu-20220509-150400.4.28.1 * kernel-firmware-intel-20220509-150400.4.28.1 * kernel-firmware-usb-network-20220509-150400.4.28.1 * kernel-firmware-ti-20220509-150400.4.28.1 * kernel-firmware-nfp-20220509-150400.4.28.1 * kernel-firmware-bluetooth-20220509-150400.4.28.1 * kernel-firmware-iwlwifi-20220509-150400.4.28.1 * kernel-firmware-marvell-20220509-150400.4.28.1 * kernel-firmware-nvidia-20220509-150400.4.28.1 * kernel-firmware-prestera-20220509-150400.4.28.1 * kernel-firmware-radeon-20220509-150400.4.28.1 * kernel-firmware-atheros-20220509-150400.4.28.1 * kernel-firmware-media-20220509-150400.4.28.1 * kernel-firmware-qlogic-20220509-150400.4.28.1 * kernel-firmware-ath11k-20220509-150400.4.28.1 * kernel-firmware-mwifiex-20220509-150400.4.28.1 * kernel-firmware-network-20220509-150400.4.28.1 * kernel-firmware-dpaa2-20220509-150400.4.28.1 * ucode-amd-20220509-150400.4.28.1 * kernel-firmware-ueagle-20220509-150400.4.28.1 * kernel-firmware-mediatek-20220509-150400.4.28.1 * kernel-firmware-serial-20220509-150400.4.28.1 * kernel-firmware-realtek-20220509-150400.4.28.1 * kernel-firmware-qcom-20220509-150400.4.28.1
## References:
* https://www.suse.com/security/cve/CVE-2023-31315.html * https://bugzilla.suse.com/show_bug.cgi?id=1229069
-- Marcus Meissner (he/him), Distinguished Engineer / Senior Project Manager Security SUSE Software Solutions Germany GmbH, Frankenstrasse 146, 90461 Nuernberg, Germany GF: Ivo Totev, Andrew McDonald, Werner Knoblich, HRB 36809, AG Nuernberg
Hello, Am Dienstag, 27. August 2024, 15:25:48 MESZ schrieb Marcus Meissner:
Currently all mails land in the moderation queue, so there is delay until we approve them (due to vacation mostly).
I need to fix that they do not land in the mod queue.
One possible issue is the message size - for example, the kernel-firmware mail Kevin quoted is about 100 kB. I just increased the limit for the security-announce list from 40 kB to 200 kB to remove one possible reason for a moderation need. Regards, Christian Boltz -- Such mal im Archiv dieser Liste nach 'reiserfs', oder genauer, nach 'rasierfs' und 'reisswolffs'. Reiserfs reagiert auf Fehler (diverser Art) wie ne Diva... [David Haller in suse-linux]
On 2024-08-28 15:23, Christian Boltz wrote:
Hello,
Am Dienstag, 27. August 2024, 15:25:48 MESZ schrieb Marcus Meissner:
Currently all mails land in the moderation queue, so there is delay until we approve them (due to vacation mostly).
I need to fix that they do not land in the mod queue.
One possible issue is the message size - for example, the kernel-firmware mail Kevin quoted is about 100 kB.
I just increased the limit for the security-announce list from 40 kB to 200 kB to remove one possible reason for a moderation need.
That will increase the number of unhappy people at the size of the quoted material. -- Cheers / Saludos, Carlos E. R. (from 15.5 x86_64 at Telcontar)
Hello, Am Mittwoch, 28. August 2024, 19:57:29 MESZ schrieb Carlos E. R.:
On 2024-08-28 15:23, Christian Boltz wrote:
I just increased the limit for the security-announce list from 40 kB to 200 kB to remove one possible reason for a moderation need.
That will increase the number of unhappy people at the size of the quoted material.
Not really ;-) Just to clarify: the change I did was for the security-announce list, _not_ for this list. Some security announcement mails are quite big (like it or not), and that probably won't change (for example, kernel updates typically come with a long list of CVE and bug references). The main difference is if these bigger mails get sent out via the security-announce list instantly (with the increased limit), or if they require moderation and get sent out a few days later ;-) Regards, Christian Boltz -- D: is just a data disk. That's why it's called "D", for "DATA". C: is the Windows OS disk, so it's called "C", for "CRAP". [David P. Murphy]
On 2024-08-28 23:20, Christian Boltz wrote:
Hello,
Am Mittwoch, 28. August 2024, 19:57:29 MESZ schrieb Carlos E. R.:
On 2024-08-28 15:23, Christian Boltz wrote:
I just increased the limit for the security-announce list from 40 kB to 200 kB to remove one possible reason for a moderation need.
That will increase the number of unhappy people at the size of the quoted material.
Not really ;-)
Just to clarify: the change I did was for the security-announce list, _not_ for this list.
Ah, right. I was thinking of Kevin's message, it includes the full message to which he replied, making 104 KB. It did not occur to me that the announcements needed moderation.
Some security announcement mails are quite big (like it or not), and that probably won't change (for example, kernel updates typically come with a long list of CVE and bug references).
Right, that is expected.
The main difference is if these bigger mails get sent out via the security-announce list instantly (with the increased limit), or if they require moderation and get sent out a few days later ;-)
Right. Thanks. -- Cheers / Saludos, Carlos E. R. (from 15.5 x86_64 at Telcontar)
participants (4)
-
Carlos E. R.
-
Christian Boltz
-
Kevin Ivory
-
Marcus Meissner