Revision Date: | 2021-03-17 | Version: | 1 |
Title: | Security update for the Linux Kernel (Live Patch 37 for SLE 12 SP2) (Important) |
Description: |
This update for the Linux Kernel 4.4.121-92_141 fixes several issues.
The following security issues were fixed:
- CVE-2021-3347: Fixed a use-after-free in the PI futexes during fault handling, allowing local users to execute code in the kernel (bsc#1181553). - CVE-2020-27786: Fixed a potential user after free which could have led to memory corruption or privilege escalation (bsc#1179616). - CVE-2020-28374: Fixed insufficient identifier checking in the LIO SCSI target code which could have been used by remote attackers to read or write files via directory traversal in an XCOPY request (bsc#1178684).
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1000106 1003030 1003032 1003870 1004016 1005004 1005005 1007157 1007160 1009100 1009103 1009104 1009107 1009108 1009109 1009111 1011652 1039496 1076017 1076390 1082810 1083488 1085114 1085447 1088268 1090036 1090338 1096740 1178684 1179616 1181553 795826 907074 914890 916927 925225 929900 943967 943968 943969 947003 955131 957226 977446 977450 977451 977452 977455 977457 977458 977459 977461 977464 979475 982575 982745 983249 988591 990419 993819 994749 994844 995075 995324 995359 995377 998190 999665 999666 999668 CVE-2012-5668 CVE-2012-5669 CVE-2014-3566 CVE-2014-8119 CVE-2014-8127 CVE-2014-8128 CVE-2014-8129 CVE-2014-8130 CVE-2014-9087 CVE-2014-9655 CVE-2015-4500 CVE-2015-4501 CVE-2015-4506 CVE-2015-4509 CVE-2015-4511 CVE-2015-4517 CVE-2015-4519 CVE-2015-4520 CVE-2015-4521 CVE-2015-4522 CVE-2015-5198 CVE-2015-5199 CVE-2015-5200 CVE-2015-7174 CVE-2015-7175 CVE-2015-7176 CVE-2015-7177 CVE-2015-7180 CVE-2015-7704 CVE-2015-7705 CVE-2015-7974 CVE-2016-1547 CVE-2016-1548 CVE-2016-1549 CVE-2016-1550 CVE-2016-1551 CVE-2016-2177 CVE-2016-2178 CVE-2016-2179 CVE-2016-2180 CVE-2016-2181 CVE-2016-2182 CVE-2016-2183 CVE-2016-2516 CVE-2016-2517 CVE-2016-2518 CVE-2016-2519 CVE-2016-6302 CVE-2016-6303 CVE-2016-6304 CVE-2016-6306 CVE-2016-7777 CVE-2016-7908 CVE-2016-7909 CVE-2016-7995 CVE-2016-8576 CVE-2016-8667 CVE-2016-8669 CVE-2016-8909 CVE-2016-8910 CVE-2016-9377 CVE-2016-9378 CVE-2016-9379 CVE-2016-9380 CVE-2016-9381 CVE-2016-9382 CVE-2016-9383 CVE-2016-9385 CVE-2016-9386 CVE-2016-9637 CVE-2017-0861 CVE-2017-1000364 CVE-2017-13166 CVE-2018-1000004 CVE-2018-1000199 CVE-2018-1068 CVE-2018-2579 CVE-2018-2582 CVE-2018-2588 CVE-2018-2599 CVE-2018-2602 CVE-2018-2603 CVE-2018-2618 CVE-2018-2633 CVE-2018-2634 CVE-2018-2637 CVE-2018-2638 CVE-2018-2639 CVE-2018-2641 CVE-2018-2663 CVE-2018-2677 CVE-2018-2678 CVE-2018-3665 CVE-2018-7566 CVE-2020-27786 CVE-2020-28374 CVE-2021-3347 SUSE-SU-2015:1420-1 SUSE-SU-2015:1792-1 SUSE-SU-2015:1925-1 SUSE-SU-2016:1291-1 SUSE-SU-2016:2394-1 SUSE-SU-2016:3083-1 SUSE-SU-2017:1943-1 SUSE-SU-2018:0665-1 SUSE-SU-2018:1032-1 SUSE-SU-2018:1231-1 SUSE-SU-2018:1264-1 SUSE-SU-2018:2097-1
|
Platform(s): | openSUSE Leap 15.0 openSUSE Leap 15.1 SUSE Linux Enterprise Desktop 11 SP2 SUSE Linux Enterprise Desktop 11 SP3 SUSE Linux Enterprise Desktop 11 SP4 SUSE Linux Enterprise Desktop 12 SP1 SUSE Linux Enterprise Server 12 SP1 SUSE Linux Enterprise Server 12 SP1-LTSS SUSE Linux Enterprise Server 12 SP2 SUSE Linux Enterprise Server 12 SP2-BCL SUSE Linux Enterprise Server 12 SP2-ESPOS SUSE Linux Enterprise Server 12 SP2-LTSS SUSE Linux Enterprise Server 12 SP3 SUSE Linux Enterprise Server 12 SP3-BCL SUSE Linux Enterprise Server 12 SP3-ESPOS SUSE Linux Enterprise Server 12 SP3-TERADATA SUSE Linux Enterprise Server 12 SP4 SUSE OpenStack Cloud 6 SUSE OpenStack Cloud 7 SUSE OpenStack Cloud 8 SUSE OpenStack Cloud Crowbar 8
| Product(s): | |
Definition Synopsis |
openSUSE Leap 15.0 is installed AND Package Information
gdm-3.26.2.1-lp150.10 is installed
OR gdm-lang-3.26.2.1-lp150.10 is installed
OR gdmflexiserver-3.26.2.1-lp150.10 is installed
OR libgdm1-3.26.2.1-lp150.10 is installed
OR typelib-1_0-Gdm-1_0-3.26.2.1-lp150.10 is installed
|
Definition Synopsis |
openSUSE Leap 15.1 is installed
AND Package Information
bluez-5.48-lp151.8.3 is installed
OR bluez-auto-enable-devices-5.48-lp151.8.3 is installed
OR bluez-cups-5.48-lp151.8.3 is installed
OR bluez-devel-5.48-lp151.8.3 is installed
OR bluez-devel-32bit-5.48-lp151.8.3 is installed
OR bluez-test-5.48-lp151.8.3 is installed
OR libbluetooth3-5.48-lp151.8.3 is installed
OR libbluetooth3-32bit-5.48-lp151.8.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 11 SP2 is installed
AND Package Information
freetype2-2.3.7-25.32 is installed
OR freetype2-32bit-2.3.7-25.32 is installed
OR freetype2-devel-2.3.7-25.32 is installed
OR ft2demos-2.3.7-25.32 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 11 SP3 is installed
AND Package Information
augeas-0.9.0-3.17 is installed
OR libaugeas0-0.9.0-3.17 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 11 SP4 is installed
AND Package Information
libvdpau-0.4.1-16.20 is installed
OR libvdpau1-0.4.1-16.20 is installed
OR libvdpau1-32bit-0.4.1-16.20 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP1 is installed
AND Package Information
xen-4.5.5_02-22.3 is installed
OR xen-kmp-default-4.5.5_02_k3.12.67_60.64.18-22.3 is installed
OR xen-libs-4.5.5_02-22.3 is installed
OR xen-libs-32bit-4.5.5_02-22.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1 is installed
AND Package Information
smt-3.0.8-1 is installed
OR smt-support-3.0.8-1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1-LTSS is installed
AND Package Information
kgraft-patch-3_12_74-60_64_40-default-2-3 is installed
OR kgraft-patch-3_12_74-60_64_40-xen-2-3 is installed
OR kgraft-patch-SLE12-SP1_Update_15-2-3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2 is installed
AND davfs2-1.5.2-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-BCL is installed
AND yast2-smt-3.0.14-17.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
AND kgraft-patch-4_4_121-92_141-default-6-2.2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-LTSS is installed
AND Package Information
kgraft-patch-4_4_114-92_67-default-4-2 is installed
OR kgraft-patch-SLE12-SP2_Update_19-4-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3 is installed
AND Package Information
krb5-1.12.5-39 is installed
OR krb5-32bit-1.12.5-39 is installed
OR krb5-client-1.12.5-39 is installed
OR krb5-doc-1.12.5-39 is installed
OR krb5-plugin-kdb-ldap-1.12.5-39 is installed
OR krb5-plugin-preauth-otp-1.12.5-39 is installed
OR krb5-plugin-preauth-pkinit-1.12.5-39 is installed
OR krb5-server-1.12.5-39 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-BCL is installed
AND Package Information
MozillaFirefox-68.8.0-109.119 is installed
OR MozillaFirefox-translations-common-68.8.0-109.119 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
AND Package Information
kgraft-patch-4_4_180-94_100-default-4-2 is installed
OR kgraft-patch-SLE12-SP3_Update_27-4-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
AND ant-1.9.4-3.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP4 is installed
AND apache2-mod_jk-1.2.40-5 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 6 is installed
AND Package Information
java-1_8_0-ibm-1.8.0_sr5.10-30.16 is installed
OR java-1_8_0-ibm-alsa-1.8.0_sr5.10-30.16 is installed
OR java-1_8_0-ibm-devel-1.8.0_sr5.10-30.16 is installed
OR java-1_8_0-ibm-plugin-1.8.0_sr5.10-30.16 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 7 is installed
AND Package Information
dnsmasq-2.78-18.3 is installed
OR dnsmasq-utils-2.78-18.3 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 8 is installed
AND Package Information
ardana-ansible-8.0+git.1583432621.24fa60e-3.70 is installed
OR ardana-barbican-8.0+git.1585152761.8ef3d61-4.33 is installed
OR ardana-db-8.0+git.1583944923.03cca6c-3.31 is installed
OR ardana-monasca-8.0+git.1583944894.38f023a-3.24 is installed
OR ardana-mq-8.0+git.1583944811.dc14403-3.19 is installed
OR ardana-neutron-8.0+git.1584715262.e4ea620-3.39 is installed
OR ardana-octavia-8.0+git.1585171918.418f5cf-3.26 is installed
OR ardana-tempest-8.0+git.1585311051.6ab5488-3.33 is installed
OR documentation-suse-openstack-cloud-installation-8.20200319-1.23 is installed
OR documentation-suse-openstack-cloud-operations-8.20200319-1.23 is installed
OR documentation-suse-openstack-cloud-opsconsole-8.20200319-1.23 is installed
OR documentation-suse-openstack-cloud-planning-8.20200319-1.23 is installed
OR documentation-suse-openstack-cloud-security-8.20200319-1.23 is installed
OR documentation-suse-openstack-cloud-supplement-8.20200319-1.23 is installed
OR documentation-suse-openstack-cloud-upstream-admin-8.20200319-1.23 is installed
OR documentation-suse-openstack-cloud-upstream-user-8.20200319-1.23 is installed
OR documentation-suse-openstack-cloud-user-8.20200319-1.23 is installed
OR memcached-1.5.17-3.3 is installed
OR openstack-manila-5.1.1~dev5-3.26 is installed
OR openstack-manila-api-5.1.1~dev5-3.26 is installed
OR openstack-manila-data-5.1.1~dev5-3.26 is installed
OR openstack-manila-doc-5.1.1~dev5-3.26 is installed
OR openstack-manila-scheduler-5.1.1~dev5-3.26 is installed
OR openstack-manila-share-5.1.1~dev5-3.26 is installed
OR openstack-neutron-11.0.9~dev63-3.30 is installed
OR openstack-neutron-dhcp-agent-11.0.9~dev63-3.30 is installed
OR openstack-neutron-doc-11.0.9~dev63-3.30 is installed
OR openstack-neutron-ha-tool-11.0.9~dev63-3.30 is installed
OR openstack-neutron-l3-agent-11.0.9~dev63-3.30 is installed
OR openstack-neutron-linuxbridge-agent-11.0.9~dev63-3.30 is installed
OR openstack-neutron-macvtap-agent-11.0.9~dev63-3.30 is installed
OR openstack-neutron-metadata-agent-11.0.9~dev63-3.30 is installed
OR openstack-neutron-metering-agent-11.0.9~dev63-3.30 is installed
OR openstack-neutron-openvswitch-agent-11.0.9~dev63-3.30 is installed
OR openstack-neutron-server-11.0.9~dev63-3.30 is installed
OR openstack-nova-16.1.9~dev61-3.35 is installed
OR openstack-nova-api-16.1.9~dev61-3.35 is installed
OR openstack-nova-cells-16.1.9~dev61-3.35 is installed
OR openstack-nova-compute-16.1.9~dev61-3.35 is installed
OR openstack-nova-conductor-16.1.9~dev61-3.35 is installed
OR openstack-nova-console-16.1.9~dev61-3.35 is installed
OR openstack-nova-consoleauth-16.1.9~dev61-3.35 is installed
OR openstack-nova-doc-16.1.9~dev61-3.35 is installed
OR openstack-nova-novncproxy-16.1.9~dev61-3.35 is installed
OR openstack-nova-placement-api-16.1.9~dev61-3.35 is installed
OR openstack-nova-scheduler-16.1.9~dev61-3.35 is installed
OR openstack-nova-serialproxy-16.1.9~dev61-3.35 is installed
OR openstack-nova-vncproxy-16.1.9~dev61-3.35 is installed
OR pdns-4.1.2-3.6 is installed
OR pdns-backend-mysql-4.1.2-3.6 is installed
OR python-amqp-2.4.2-3.9 is installed
OR python-manila-5.1.1~dev5-3.26 is installed
OR python-neutron-11.0.9~dev63-3.30 is installed
OR python-nova-16.1.9~dev61-3.35 is installed
OR venv-openstack-aodh-5.1.1~dev7-12.24 is installed
OR venv-openstack-aodh-x86_64-5.1.1~dev7-12.24 is installed
OR venv-openstack-barbican-5.0.2~dev3-12.25 is installed
OR venv-openstack-barbican-x86_64-5.0.2~dev3-12.25 is installed
OR venv-openstack-ceilometer-9.0.8~dev7-12.22 is installed
OR venv-openstack-ceilometer-x86_64-9.0.8~dev7-12.22 is installed
OR venv-openstack-cinder-11.2.3~dev23-14.25 is installed
OR venv-openstack-cinder-x86_64-11.2.3~dev23-14.25 is installed
OR venv-openstack-designate-5.0.3~dev7-12.23 is installed
OR venv-openstack-designate-x86_64-5.0.3~dev7-12.23 is installed
OR venv-openstack-freezer-5.0.0.0~xrc2~dev2-10.20 is installed
OR venv-openstack-freezer-x86_64-5.0.0.0~xrc2~dev2-10.20 is installed
OR venv-openstack-glance-15.0.3~dev3-12.23 is installed
OR venv-openstack-glance-x86_64-15.0.3~dev3-12.23 is installed
OR venv-openstack-heat-9.0.8~dev22-12.25 is installed
OR venv-openstack-heat-x86_64-9.0.8~dev22-12.25 is installed
OR venv-openstack-ironic-9.1.8~dev8-12.25 is installed
OR venv-openstack-ironic-x86_64-9.1.8~dev8-12.25 is installed
OR venv-openstack-keystone-12.0.4~dev5-11.26 is installed
OR venv-openstack-keystone-x86_64-12.0.4~dev5-11.26 is installed
OR venv-openstack-magnum-5.0.2_5.0.2_5.0.2~dev31-11.24 is installed
OR venv-openstack-magnum-x86_64-5.0.2_5.0.2_5.0.2~dev31-11.24 is installed
OR venv-openstack-manila-5.1.1~dev5-12.29 is installed
OR venv-openstack-manila-x86_64-5.1.1~dev5-12.29 is installed
OR venv-openstack-monasca-ceilometer-1.5.1_1.5.1_1.5.1~dev3-8.20 is installed
OR venv-openstack-monasca-ceilometer-x86_64-1.5.1_1.5.1_1.5.1~dev3-8.20 is installed
OR venv-openstack-murano-4.0.2~dev2-12.20 is installed
OR venv-openstack-murano-x86_64-4.0.2~dev2-12.20 is installed
OR venv-openstack-neutron-11.0.9~dev63-13.28 is installed
OR venv-openstack-neutron-x86_64-11.0.9~dev63-13.28 is installed
OR venv-openstack-nova-16.1.9~dev61-11.26 is installed
OR venv-openstack-nova-x86_64-16.1.9~dev61-11.26 is installed
OR venv-openstack-octavia-1.0.6~dev3-12.25 is installed
OR venv-openstack-octavia-x86_64-1.0.6~dev3-12.25 is installed
OR venv-openstack-sahara-7.0.5~dev4-11.24 is installed
OR venv-openstack-sahara-x86_64-7.0.5~dev4-11.24 is installed
OR venv-openstack-trove-8.0.2~dev2-11.24 is installed
OR venv-openstack-trove-x86_64-8.0.2~dev2-11.24 is installed
OR zookeeper-3.4.10-3.6 is installed
OR zookeeper-server-3.4.10-3.6 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud Crowbar 8 is installed
AND Package Information
libpolkit0-0.113-5.18 is installed
OR polkit-0.113-5.18 is installed
OR typelib-1_0-Polkit-1_0-0.113-5.18 is installed
|