Revision Date: | 2022-02-02 | Version: | 1 |
Title: | Security update for the Linux Kernel (Live Patch 1 for SLE 15 SP3) (Important) |
Description: |
This update for the Linux Kernel 5.3.18-59_5 fixes several issues.
The following security issues were fixed:
- CVE-2022-0185: Incorrect param length parsing in legacy_parse_param which could have led to a local privilege escalation (bsc#1194517). - CVE-2021-4154: Fixed option parsing with cgroups version 1 (bsc#1193842). - CVE-2021-4028: Fixed use-after-free in RDMA listen() that could lead to DoS or privilege escalation by a local attacker (bsc#1193167). - CVE-2020-3702: Fixed a bug which could be triggered with specifically timed and handcrafted traffic and cause internal errors in a WLAN device that lead to improper layer 2 Wi-Fi encryption with a consequent possibility of information disclosure. (bsc#1191193) - CVE-2021-42739: The firewire subsystem had a buffer overflow related to drivers/media/firewire/firedtv-avc.c and drivers/media/firewire/firedtv-ci.c, because avc_ca_pmt mishandled bounds checking (bsc#1184673).
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1125601 1127153 1130245 1134452 1144902 1154289 1154598 1191529 1192036 1193529 1194461 1194737 CVE-2015-7747 CVE-2016-1238 CVE-2017-15705 CVE-2017-6827 CVE-2017-6828 CVE-2017-6829 CVE-2017-6830 CVE-2017-6831 CVE-2017-6832 CVE-2017-6833 CVE-2017-6834 CVE-2017-6835 CVE-2017-6836 CVE-2017-6837 CVE-2017-6838 CVE-2017-6839 CVE-2018-11780 CVE-2018-11781 CVE-2018-11805 CVE-2018-13440 CVE-2018-17095 CVE-2019-10218 CVE-2019-10218 CVE-2019-14833 CVE-2019-14833 CVE-2019-14847 CVE-2019-14847 CVE-2020-1930 CVE-2020-1931 CVE-2020-3702 CVE-2021-4028 CVE-2021-4154 CVE-2021-42739 CVE-2022-0185 SUSE-SU-2019:2868-1 SUSE-SU-2022:0295-1
|
Platform(s): | SUSE Cloud Compute Node for SUSE Linux Enterprise 12 5 SUSE Linux Enterprise Desktop 11 SP2 SUSE Linux Enterprise Desktop 12 SUSE Linux Enterprise Desktop 12 SP1 SUSE Linux Enterprise Desktop 12 SP2 SUSE Linux Enterprise Desktop 12 SP3 SUSE Linux Enterprise Desktop 15 SP1 SUSE Linux Enterprise High Performance Computing 15 SP1 SUSE Linux Enterprise High Performance Computing 15 SP3 SUSE Linux Enterprise Micro 5.1 SUSE Linux Enterprise Micro 5.2 SUSE Linux Enterprise Module for additional PackageHub packages 15 SUSE Linux Enterprise Module for Basesystem 15 SUSE Linux Enterprise Module for Basesystem 15 SP1 SUSE Linux Enterprise Module for CAP 15 SUSE Linux Enterprise Module for Containers 15 SUSE Linux Enterprise Module for Containers 15 SP1 SUSE Linux Enterprise Module for Desktop Applications 15 SUSE Linux Enterprise Module for Desktop Applications 15 SP1 SUSE Linux Enterprise Module for Development Tools 15 SP2 SUSE Linux Enterprise Module for Live Patching 15 SP1 SUSE Linux Enterprise Module for Live Patching 15 SP3 SUSE Linux Enterprise Module for Public Cloud 15 SUSE Linux Enterprise Module for Public Cloud 15 SP1 SUSE Linux Enterprise Server 11-SECURITY SUSE Linux Enterprise Server 12 SUSE Linux Enterprise Server 12 SP1 SUSE Linux Enterprise Server 12 SP2 SUSE Linux Enterprise Server 12-LTSS SUSE Linux Enterprise Server 15 SP1 SUSE Linux Enterprise Server 15 SP3 SUSE Linux Enterprise Server for SAP Applications 15 SP1 SUSE Linux Enterprise Server for SAP Applications 15 SP3 SUSE Linux Enterprise Software Development Kit 11 SP2 SUSE Linux Enterprise Software Development Kit 11 SP3 SUSE Linux Enterprise Software Development Kit 11 SP4 SUSE Linux Enterprise Storage 6 SUSE Linux Enterprise Workstation Extension 12 SUSE Linux Enterprise Workstation Extension 12 SP1 SUSE Manager Proxy 4.0 SUSE Manager Server 4.0
| Product(s): | |
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 is installed AND Package Information
libfreebl3-3.16.4-5 is installed
OR libfreebl3-32bit-3.16.4-5 is installed
OR libsoftokn3-3.16.4-5 is installed
OR libsoftokn3-32bit-3.16.4-5 is installed
OR mozilla-nss-3.16.4-5 is installed
OR mozilla-nss-32bit-3.16.4-5 is installed
OR mozilla-nss-certs-3.16.4-5 is installed
OR mozilla-nss-certs-32bit-3.16.4-5 is installed
OR mozilla-nss-tools-3.16.4-5 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP1 is installed
AND Package Information
accountsservice-0.6.35-3 is installed
OR accountsservice-lang-0.6.35-3 is installed
OR libaccountsservice0-0.6.35-3 is installed
OR typelib-1_0-AccountsService-1_0-0.6.35-3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP2 is installed
AND Package Information
DirectFB-1.7.1-6 is installed
OR lib++dfb-1_7-1-1.7.1-6 is installed
OR libdirectfb-1_7-1-1.7.1-6 is installed
OR libdirectfb-1_7-1-32bit-1.7.1-6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP3 is installed
AND Package Information
aaa_base-13.2+git20140911.61c1681-36 is installed
OR aaa_base-extras-13.2+git20140911.61c1681-36 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Desktop Applications 15 SP1 is installed
AND Package Information
audiofile-devel-0.3.6-3.7.10 is installed
OR libaudiofile1-0.3.6-3.7.10 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise High Performance Computing 15 SP3 is installed
OR SUSE Linux Enterprise Micro 5.1 is installed
OR SUSE Linux Enterprise Micro 5.2 is installed
OR SUSE Linux Enterprise Module for Live Patching 15 SP3 is installed
OR SUSE Linux Enterprise Server 15 SP3 is installed
OR SUSE Linux Enterprise Server for SAP Applications 15 SP3 is installed
AND kernel-livepatch-5_3_18-59_5-default-8-150300.2.2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for additional PackageHub packages 15 is installed
AND Package Information
php7-7.2.5-4.35 is installed
OR php7-embed-7.2.5-4.35 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Basesystem 15 is installed
AND Package Information
libdcerpc-binding0-4.7.11+git.186.d75219614c3-4.30 is installed
OR libdcerpc-binding0-32bit-4.7.11+git.186.d75219614c3-4.30 is installed
OR libdcerpc-devel-4.7.11+git.186.d75219614c3-4.30 is installed
OR libdcerpc-samr-devel-4.7.11+git.186.d75219614c3-4.30 is installed
OR libdcerpc-samr0-4.7.11+git.186.d75219614c3-4.30 is installed
OR libdcerpc0-4.7.11+git.186.d75219614c3-4.30 is installed
OR libdcerpc0-32bit-4.7.11+git.186.d75219614c3-4.30 is installed
OR libndr-devel-4.7.11+git.186.d75219614c3-4.30 is installed
OR libndr-krb5pac-devel-4.7.11+git.186.d75219614c3-4.30 is installed
OR libndr-krb5pac0-4.7.11+git.186.d75219614c3-4.30 is installed
OR libndr-krb5pac0-32bit-4.7.11+git.186.d75219614c3-4.30 is installed
OR libndr-nbt-devel-4.7.11+git.186.d75219614c3-4.30 is installed
OR libndr-nbt0-4.7.11+git.186.d75219614c3-4.30 is installed
OR libndr-nbt0-32bit-4.7.11+git.186.d75219614c3-4.30 is installed
OR libndr-standard-devel-4.7.11+git.186.d75219614c3-4.30 is installed
OR libndr-standard0-4.7.11+git.186.d75219614c3-4.30 is installed
OR libndr-standard0-32bit-4.7.11+git.186.d75219614c3-4.30 is installed
OR libndr0-4.7.11+git.186.d75219614c3-4.30 is installed
OR libndr0-32bit-4.7.11+git.186.d75219614c3-4.30 is installed
OR libnetapi-devel-4.7.11+git.186.d75219614c3-4.30 is installed
OR libnetapi0-4.7.11+git.186.d75219614c3-4.30 is installed
OR libnetapi0-32bit-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsamba-credentials-devel-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsamba-credentials0-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsamba-credentials0-32bit-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsamba-errors-devel-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsamba-errors0-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsamba-errors0-32bit-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsamba-hostconfig-devel-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsamba-hostconfig0-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsamba-hostconfig0-32bit-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsamba-passdb-devel-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsamba-passdb0-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsamba-passdb0-32bit-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsamba-policy-devel-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsamba-policy0-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsamba-util-devel-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsamba-util0-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsamba-util0-32bit-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsamdb-devel-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsamdb0-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsamdb0-32bit-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsmbclient-devel-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsmbclient0-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsmbclient0-32bit-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsmbconf-devel-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsmbconf0-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsmbconf0-32bit-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsmbldap-devel-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsmbldap2-4.7.11+git.186.d75219614c3-4.30 is installed
OR libsmbldap2-32bit-4.7.11+git.186.d75219614c3-4.30 is installed
OR libtevent-util-devel-4.7.11+git.186.d75219614c3-4.30 is installed
OR libtevent-util0-4.7.11+git.186.d75219614c3-4.30 is installed
OR libtevent-util0-32bit-4.7.11+git.186.d75219614c3-4.30 is installed
OR libwbclient-devel-4.7.11+git.186.d75219614c3-4.30 is installed
OR libwbclient0-4.7.11+git.186.d75219614c3-4.30 is installed
OR libwbclient0-32bit-4.7.11+git.186.d75219614c3-4.30 is installed
OR samba-4.7.11+git.186.d75219614c3-4.30 is installed
OR samba-client-4.7.11+git.186.d75219614c3-4.30 is installed
OR samba-client-32bit-4.7.11+git.186.d75219614c3-4.30 is installed
OR samba-core-devel-4.7.11+git.186.d75219614c3-4.30 is installed
OR samba-libs-4.7.11+git.186.d75219614c3-4.30 is installed
OR samba-libs-32bit-4.7.11+git.186.d75219614c3-4.30 is installed
OR samba-winbind-4.7.11+git.186.d75219614c3-4.30 is installed
OR samba-winbind-32bit-4.7.11+git.186.d75219614c3-4.30 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
AND Package Information
bzip2-1.0.6-5.3 is installed
OR libbz2-1-1.0.6-5.3 is installed
OR libbz2-1-32bit-1.0.6-5.3 is installed
OR libbz2-devel-1.0.6-5.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for CAP 15 is installed
AND cf-cli-6.43.0-3.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Containers 15 is installed
AND Package Information
containerd-1.1.2-5.6 is installed
OR docker-18.09.0_ce-6.11 is installed
OR docker-bash-completion-18.09.0_ce-6.11 is installed
OR docker-libnetwork-0.7.0.1+gitr2704_6da50d197830-4.6 is installed
OR docker-runc-1.0.0rc5+gitr3562_69663f0bd4b6-6.6 is installed
OR golang-github-docker-libnetwork-0.7.0.1+gitr2704_6da50d197830-4.6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Containers 15 SP1 is installed
AND Package Information
containerd-1.2.5-5.13 is installed
OR docker-18.09.6_ce-6.17 is installed
OR docker-bash-completion-18.09.6_ce-6.17 is installed
OR docker-libnetwork-0.7.0.1+gitr2726_872f0a83c98a-4.12 is installed
OR docker-runc-1.0.0rc6+gitr3804_2b18fe1d885e-6.18 is installed
OR golang-github-docker-libnetwork-0.7.0.1+gitr2726_872f0a83c98a-4.12 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Desktop Applications 15 is installed
AND Package Information
exiv2-0.26-6.3 is installed
OR libexiv2-26-0.26-6.3 is installed
OR libexiv2-devel-0.26-6.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Development Tools 15 SP2 is installed
AND perl-Mail-SpamAssassin-Plugin-iXhash2-2.05-12.5 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Live Patching 15 SP1 is installed
AND Package Information
kernel-default-4.12.14-197.26 is installed
OR kernel-default-livepatch-4.12.14-197.26 is installed
OR kernel-default-livepatch-devel-4.12.14-197.26 is installed
OR kernel-livepatch-4_12_14-197_26-default-1-3.5 is installed
OR kernel-livepatch-SLE15-SP1_Update_7-1-3.5 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Public Cloud 15 is installed
AND Package Information
kernel-azure-4.12.14-5.5 is installed
OR kernel-azure-base-4.12.14-5.5 is installed
OR kernel-azure-devel-4.12.14-5.5 is installed
OR kernel-devel-azure-4.12.14-5.5 is installed
OR kernel-source-azure-4.12.14-5.5 is installed
OR kernel-syms-azure-4.12.14-5.5 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Public Cloud 15 SP1 is installed
AND Package Information
kernel-azure-4.12.14-8.19 is installed
OR kernel-azure-base-4.12.14-8.19 is installed
OR kernel-azure-devel-4.12.14-8.19 is installed
OR kernel-devel-azure-4.12.14-8.19 is installed
OR kernel-source-azure-4.12.14-8.19 is installed
OR kernel-syms-azure-4.12.14-8.19 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1 is installed
AND Package Information
accountsservice-0.6.35-3 is installed
OR accountsservice-lang-0.6.35-3 is installed
OR libaccountsservice0-0.6.35-3 is installed
OR typelib-1_0-AccountsService-1_0-0.6.35-3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2 is installed
AND Package Information
java-1_8_0-ibm-1.8.0_sr3.0-10.1 is installed
OR java-1_8_0-ibm-alsa-1.8.0_sr3.0-10.1 is installed
OR java-1_8_0-ibm-plugin-1.8.0_sr3.0-10.1 is installed
|