linux, linux-aws, linux-aws-5.4, linux-azure, linux-azure-5.4, linux-bluefield, linux-gcp, linux-gcp-5.4, linux-gkeop, linux-hwe-5.4, linux-ibm, linux-ibm-5.4, linux-iot, linux-kvm, linux-oracle, linux-oracle-5.4, linux-raspi, linux-raspi-5.4, linux-xilinx-zynqmp vulnerabilities
Daniele Antonioli discovered that the Secure Simple Pairing and Secure Connections pairing in the Bluetooth protocol could allow an unauthenticated user to complete authentication without pairing credentials. A physically proximate attacker placed between two Bluetooth devices could use this to subsequently impersonate one of the paired devices. (CVE-2023-24023)
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems:
5.4.0-177.1975.4.0-1123.1335.4.0-1128.1355.4.0-1083.905.4.0-1127.1365.4.0-1090.945.4.0-1070.755.4.0-1035.365.4.0-1111.1185.4.0-1122.1315.4.0-1107.1195.4.0-1042.465.4.0-1123.133~18.04.15.4.0-1128.135~18.04.15.4.0-1127.136~18.04.15.4.0-177.197~18.04.15.4.0-1070.75~18.04.15.4.0-1122.131~18.04.15.4.0-1107.119~18.04.1