Oval Definition:oval:org.opensuse.security:def:59050
Revision Date:2020-12-01Version:1
Title:Security update for the Linux Kernel (Live Patch 29 for SLE 12 SP2) (Important)
Description:

This update for the Linux Kernel 4.4.121-92_109 fixes several issues.

The following security issues were fixed:

- CVE-2019-3846: A flaw that allowed an attacker to corrupt memory and possibly escalate privileges was found in the mwifiex kernel module while connecting to a malicious wireless network (bsc#1136446). - CVE-2019-11477: A sequence of SACKs may have been crafted by a remote attacker such that one can trigger an integer overflow, leading to a kernel panic. (bsc#1137586). - CVE-2019-11478: It was possible to send a crafted sequence of SACKs which would fragment the TCP retransmission queue. A remote attacker may have been able to further exploit the fragmented queue to cause an expensive linked-list walk for subsequent SACKs received for that same TCP connection. (bsc#1137586) - CVE-2019-11487: The Linux kernel allowed page->_refcount reference count overflow, with resultant use-after-free issues, if about 140 GiB of RAM exists. This is related to fs/fuse/dev.c, fs/pipe.c, fs/splice.c, include/linux/mm.h, include/linux/pipe_fs_i.h, kernel/trace/trace.c, mm/gup.c, and mm/hugetlb.c. It can occur with FUSE requests (bsc#1133191).
Family:unixClass:patch
Status:Reference(s):1012382
1024908
1034113
1043485
1055857
1059893
1068032
1073311
1080157
1080533
1082632
1087231
1087659
1087906
1090638
1093158
1094268
1096748
1100152
1102840
1103186
1106913
1109772
1111331
1112178
1113399
1115375
1116841
1118338
1119019
1119947
1120943
1122822
1124832
1125580
1129279
1130721
1131416
1131427
1131587
1132673
1132828
1133188
1133191
1136446
1136935
1137597
1141780
1141782
1141783
1141784
1141785
1141786
1141787
1141789
1144902
1153674
1157888
1158003
1158004
1158005
1158006
1158007
1160039
1160305
1160498
1160770
1161181
1167152
1168140
1168142
1169392
1170601
1171186
1171475
1171847
1171863
1171864
1171866
1172105
1172116
1172121
1172205
1174628
CVE-2010-1172
CVE-2013-0292
CVE-2015-7236
CVE-2016-6328
CVE-2016-8636
CVE-2017-17741
CVE-2017-17833
CVE-2017-18174
CVE-2017-7544
CVE-2017-8779
CVE-2018-1091
CVE-2018-1120
CVE-2018-1128
CVE-2018-1129
CVE-2018-12126
CVE-2018-12127
CVE-2018-12130
CVE-2018-16884
CVE-2018-19407
CVE-2018-20030
CVE-2019-10218
CVE-2019-11091
CVE-2019-11477
CVE-2019-11478
CVE-2019-11486
CVE-2019-11487
CVE-2019-14287
CVE-2019-17015
CVE-2019-17016
CVE-2019-17017
CVE-2019-17021
CVE-2019-17022
CVE-2019-17024
CVE-2019-17026
CVE-2019-1787
CVE-2019-1788
CVE-2019-1789
CVE-2019-19577
CVE-2019-19578
CVE-2019-19579
CVE-2019-19580
CVE-2019-19581
CVE-2019-19583
CVE-2019-2745
CVE-2019-2762
CVE-2019-2766
CVE-2019-2769
CVE-2019-2786
CVE-2019-2816
CVE-2019-2842
CVE-2019-3846
CVE-2019-3882
CVE-2019-7317
CVE-2019-8564
CVE-2019-9278
CVE-2019-9503
CVE-2020-0093
CVE-2020-0543
CVE-2020-10543
CVE-2020-10878
CVE-2020-11739
CVE-2020-11740
CVE-2020-11741
CVE-2020-11742
CVE-2020-12387
CVE-2020-12388
CVE-2020-12389
CVE-2020-12392
CVE-2020-12393
CVE-2020-12395
CVE-2020-12723
CVE-2020-12767
CVE-2020-13112
CVE-2020-13113
CVE-2020-13114
CVE-2020-14344
CVE-2020-6831
CVE-2020-7211
SUSE-SU-2019:0897-1
SUSE-SU-2019:1287-1
SUSE-SU-2019:2036-1
SUSE-SU-2019:2875-1
SUSE-SU-2020:0068-1
SUSE-SU-2020:1218-1
SUSE-SU-2020:1630-1
SUSE-SU-2020:1662-1
SUSE-SU-2020:2117-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP4-LTSS
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • libgxps-0.3.0-lp150.3.3 is installed
  • OR libgxps-devel-0.3.0-lp150.3.3 is installed
  • OR libgxps-tools-0.3.0-lp150.3.3 is installed
  • OR libgxps2-0.3.0-lp150.3.3 is installed
  • OR typelib-1_0-GXPS-0_1-0.3.0-lp150.3.3 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • java-1_8_0-openjdk-1.8.0.222-lp151.2.3 is installed
  • OR java-1_8_0-openjdk-accessibility-1.8.0.222-lp151.2.3 is installed
  • OR java-1_8_0-openjdk-demo-1.8.0.222-lp151.2.3 is installed
  • OR java-1_8_0-openjdk-devel-1.8.0.222-lp151.2.3 is installed
  • OR java-1_8_0-openjdk-headless-1.8.0.222-lp151.2.3 is installed
  • OR java-1_8_0-openjdk-javadoc-1.8.0.222-lp151.2.3 is installed
  • OR java-1_8_0-openjdk-src-1.8.0.222-lp151.2.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • kernel-default-4.4.121-92.109 is installed
  • OR kernel-default-base-4.4.121-92.109 is installed
  • OR kernel-default-devel-4.4.121-92.109 is installed
  • OR kernel-devel-4.4.121-92.109 is installed
  • OR kernel-macros-4.4.121-92.109 is installed
  • OR kernel-source-4.4.121-92.109 is installed
  • OR kernel-syms-4.4.121-92.109 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • openslp-2.0.0-18.15 is installed
  • OR openslp-32bit-2.0.0-18.15 is installed
  • OR openslp-server-2.0.0-18.15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_121-92_109-default-3-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_29-3-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • dbus-1-glib-0.100.2-3 is installed
  • OR dbus-1-glib-32bit-0.100.2-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • libsolv-0.6.36-2.27.19 is installed
  • OR libsolv-tools-0.6.36-2.27.19 is installed
  • OR libzypp-16.20.2-27.60 is installed
  • OR perl-solv-0.6.36-2.27.19 is installed
  • OR python-solv-0.6.36-2.27.19 is installed
  • OR zypper-1.13.54-18.40 is installed
  • OR zypper-log-1.13.54-18.40 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_156-94_64-default-8-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_20-8-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_180-94_97-default-4-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_26-4-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • gnome-shell-search-provider-nautilus-3.20.3-23.6 is installed
  • OR libnautilus-extension1-3.20.3-23.6 is installed
  • OR nautilus-3.20.3-23.6 is installed
  • OR nautilus-lang-3.20.3-23.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND ctags-5.8-7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-LTSS is installed
  • AND Package Information
  • grub2-2.02-12.31 is installed
  • OR grub2-arm64-efi-2.02-12.31 is installed
  • OR grub2-i386-pc-2.02-12.31 is installed
  • OR grub2-powerpc-ieee1275-2.02-12.31 is installed
  • OR grub2-s390x-emu-2.02-12.31 is installed
  • OR grub2-snapper-plugin-2.02-12.31 is installed
  • OR grub2-systemd-sleep-plugin-2.02-12.31 is installed
  • OR grub2-x86_64-efi-2.02-12.31 is installed
  • OR grub2-x86_64-xen-2.02-12.31 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • MozillaFirefox-68.8.0-109.119 is installed
  • OR MozillaFirefox-translations-common-68.8.0-109.119 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • libjavascriptcoregtk-4_0-18-2.24.4-2.47 is installed
  • OR libwebkit2gtk-4_0-37-2.24.4-2.47 is installed
  • OR libwebkit2gtk3-lang-2.24.4-2.47 is installed
  • OR typelib-1_0-JavaScriptCore-4_0-2.24.4-2.47 is installed
  • OR typelib-1_0-WebKit2-4_0-2.24.4-2.47 is installed
  • OR webkit2gtk-4_0-injected-bundles-2.24.4-2.47 is installed
  • OR webkit2gtk3-2.24.4-2.47 is installed
  • BACK