Oval Definition:oval:org.opensuse.security:def:56328
Revision Date:2020-12-01Version:1
Title:Security update for the Linux Kernel (Critical)
Description:



The SUSE Linux Enterprise 12 SP2 kernel was updated to receive various security and bugfixes.



The following security bugs were fixed:

- CVE-2017-1000364: The default stack guard page was too small and could be 'jumped over' by userland programs using more than one page of stack in functions and so lead to memory corruption. This update extends the stack guard page to 1 MB (for 4k pages) and 16 MB (for 64k pages) to reduce this attack vector. This is not a kernel bugfix, but a hardening measure against this kind of userland attack.(bsc#1039348)

The following non-security bugs were fixed:

- There was a load failure in the sha-mb encryption implementation (bsc#1037384).
Family:unixClass:patch
Status:Reference(s):1012382
1024788
1027575
1036244
1037384
1038564
1039348
1042892
1043290
1046191
1050087
1050751
1056434
1057406
1058630
1059735
1060382
1062604
1064233
1065999
1066168
1066170
1082283
1082291
1082348
1082362
1082792
1082837
1083628
1083634
1086011
1086774
1086775
1086813
1086814
1086817
1086820
1090534
1090955
1091171
1092903
1096547
1097104
1097108
1099811
1099813
1099844
1099845
1099846
1099849
1099863
1099864
1099922
1100001
1102870
1103445
1104319
1104495
1104818
1104906
1105100
1105322
1105323
1105396
1106095
1106369
1106509
1106511
1107689
1108912
1137597
1140747
CVE-2009-2666
CVE-2010-0405
CVE-2010-1167
CVE-2011-0421
CVE-2011-1098
CVE-2011-1154
CVE-2011-1155
CVE-2011-1947
CVE-2011-3389
CVE-2012-1152
CVE-2012-1162
CVE-2012-1163
CVE-2012-3482
CVE-2013-1987
CVE-2013-4282
CVE-2013-6393
CVE-2014-1829
CVE-2014-1830
CVE-2014-2525
CVE-2014-4607
CVE-2014-9130
CVE-2015-2296
CVE-2015-2331
CVE-2015-3247
CVE-2015-5260
CVE-2015-5261
CVE-2016-0749
CVE-2016-2150
CVE-2017-1000364
CVE-2017-11524
CVE-2017-12692
CVE-2017-12693
CVE-2017-13768
CVE-2017-14314
CVE-2017-14505
CVE-2017-14739
CVE-2017-15016
CVE-2017-15017
CVE-2017-15710
CVE-2017-15715
CVE-2017-16352
CVE-2017-16353
CVE-2017-18209
CVE-2017-18211
CVE-2017-2636
CVE-2017-7533
CVE-2017-7645
CVE-2017-8422
CVE-2017-8890
CVE-2017-9242
CVE-2017-9500
CVE-2018-10853
CVE-2018-10876
CVE-2018-10877
CVE-2018-10878
CVE-2018-10879
CVE-2018-10880
CVE-2018-10881
CVE-2018-10882
CVE-2018-10883
CVE-2018-10902
CVE-2018-10940
CVE-2018-1283
CVE-2018-12896
CVE-2018-1301
CVE-2018-1303
CVE-2018-13093
CVE-2018-1312
CVE-2018-14617
CVE-2018-14634
CVE-2018-16276
CVE-2018-16658
CVE-2018-6554
CVE-2018-6555
CVE-2018-7443
CVE-2018-7470
CVE-2018-8804
CVE-2019-11477
CVE-2019-11478
SUSE-SU-2017:1335-1
SUSE-SU-2017:1617-1
SUSE-SU-2017:2088-1
SUSE-SU-2018:0857-1
SUSE-SU-2018:0879-1
SUSE-SU-2018:2908-1
SUSE-SU-2019:1924-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 9
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND autofs-5.1.3-lp150.5 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • dbus-1-1.12.2-lp151.4.3 is installed
  • OR dbus-1-devel-1.12.2-lp151.4.3 is installed
  • OR dbus-1-devel-32bit-1.12.2-lp151.4.3 is installed
  • OR dbus-1-devel-doc-1.12.2-lp151.4.3 is installed
  • OR dbus-1-x11-1.12.2-lp151.4.3 is installed
  • OR libdbus-1-3-1.12.2-lp151.4.3 is installed
  • OR libdbus-1-3-32bit-1.12.2-lp151.4.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • kernel-default-4.4.59-92.20 is installed
  • OR kernel-default-devel-4.4.59-92.20 is installed
  • OR kernel-default-extra-4.4.59-92.20 is installed
  • OR kernel-devel-4.4.59-92.20 is installed
  • OR kernel-macros-4.4.59-92.20 is installed
  • OR kernel-source-4.4.59-92.20 is installed
  • OR kernel-syms-4.4.59-92.20 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • bzip2-1.0.6-27 is installed
  • OR bzip2-doc-1.0.6-27 is installed
  • OR libbz2-1-1.0.6-27 is installed
  • OR libbz2-1-32bit-1.0.6-27 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • kgraft-patch-3_12_62-60_64_8-default-10-2 is installed
  • OR kgraft-patch-3_12_62-60_64_8-xen-10-2 is installed
  • OR kgraft-patch-SLE12-SP1_Update_8-10-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • fetchmail-6.3.26-12 is installed
  • OR fetchmailconf-6.3.26-12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • libopenssl-devel-1.0.2j-60.30 is installed
  • OR libopenssl1_0_0-1.0.2j-60.30 is installed
  • OR libopenssl1_0_0-32bit-1.0.2j-60.30 is installed
  • OR libopenssl1_0_0-hmac-1.0.2j-60.30 is installed
  • OR libopenssl1_0_0-hmac-32bit-1.0.2j-60.30 is installed
  • OR openssl-1.0.2j-60.30 is installed
  • OR openssl-doc-1.0.2j-60.30 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_103-92_53-default-11-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_16-11-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND ucode-intel-20180425-13.20 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND stunnel-5.00-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_180-94_103-default-2-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_28-2-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • cron-4.2-59.10 is installed
  • OR cronie-1.4.11-59.10 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND ctags-5.8-7 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND python-requests-2.8.1-6.9 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • libwireshark9-2.4.9-48.29 is installed
  • OR libwiretap7-2.4.9-48.29 is installed
  • OR libwscodecs1-2.4.9-48.29 is installed
  • OR libwsutil8-2.4.9-48.29 is installed
  • OR wireshark-2.4.9-48.29 is installed
  • OR wireshark-gtk-2.4.9-48.29 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 9 is installed
  • AND Package Information
  • mariadb-10.2.29-3.22 is installed
  • OR mariadb-galera-10.2.29-3.22 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • glib2-2.48.2-12.15 is installed
  • OR glib2-lang-2.48.2-12.15 is installed
  • OR glib2-tools-2.48.2-12.15 is installed
  • OR libgio-2_0-0-2.48.2-12.15 is installed
  • OR libgio-2_0-0-32bit-2.48.2-12.15 is installed
  • OR libglib-2_0-0-2.48.2-12.15 is installed
  • OR libglib-2_0-0-32bit-2.48.2-12.15 is installed
  • OR libgmodule-2_0-0-2.48.2-12.15 is installed
  • OR libgmodule-2_0-0-32bit-2.48.2-12.15 is installed
  • OR libgobject-2_0-0-2.48.2-12.15 is installed
  • OR libgobject-2_0-0-32bit-2.48.2-12.15 is installed
  • OR libgthread-2_0-0-2.48.2-12.15 is installed
  • OR libgthread-2_0-0-32bit-2.48.2-12.15 is installed
  • BACK