Oval Definition:oval:org.opensuse.security:def:59051
Revision Date:2020-12-01Version:1
Title:Security update for the Linux Kernel (Live Patch 28 for SLE 12 SP2) (Important)
Description:

This update for the Linux Kernel 4.4.121-92_104 fixes several issues.

The following security issues were fixed:

- CVE-2019-3846: A flaw that allowed an attacker to corrupt memory and possibly escalate privileges was found in the mwifiex kernel module while connecting to a malicious wireless network (bsc#1136446). - CVE-2019-11477: A sequence of SACKs may have been crafted by a remote attacker such that one can trigger an integer overflow, leading to a kernel panic. (bsc#1137586). - CVE-2019-11478: It was possible to send a crafted sequence of SACKs which would fragment the TCP retransmission queue. A remote attacker may have been able to further exploit the fragmented queue to cause an expensive linked-list walk for subsequent SACKs received for that same TCP connection. (bsc#1137586) - CVE-2019-11487: The Linux kernel allowed page->_refcount reference count overflow, with resultant use-after-free issues, if about 140 GiB of RAM exists. This is related to fs/fuse/dev.c, fs/pipe.c, fs/splice.c, include/linux/mm.h, include/linux/pipe_fs_i.h, kernel/trace/trace.c, mm/gup.c, and mm/hugetlb.c. It can occur with FUSE requests (bsc#1133191).
Family:unixClass:patch
Status:Reference(s):1013882
1016715
1101676
1101677
1101678
1102840
1103342
1104826
1111331
1111789
1112368
1112397
1112417
1112421
1112432
1116686
1118754
1119947
1123022
1130116
1132666
1133191
1136037
1136446
1136935
1137597
1144902
1153332
1160039
1162002
1163985
1169511
1169659
1170313
1170383
1170423
1170601
1171189
1171191
1171220
1171732
1171863
1171864
1171866
1171988
1172031
1172049
1172225
1172277
1172453
1172458
1172775
1172781
1172782
1172783
1172999
1174115
1174462
1174543
CVE-2009-1892
CVE-2010-2156
CVE-2010-3611
CVE-2010-3616
CVE-2011-0413
CVE-2011-0997
CVE-2011-2748
CVE-2011-2749
CVE-2011-4539
CVE-2011-4868
CVE-2012-3570
CVE-2012-3571
CVE-2012-3954
CVE-2012-3955
CVE-2013-2266
CVE-2013-6435
CVE-2014-8118
CVE-2015-8605
CVE-2016-4975
CVE-2016-8743
CVE-2016-9843
CVE-2018-12126
CVE-2018-12127
CVE-2018-12130
CVE-2018-16301
CVE-2018-16884
CVE-2018-3058
CVE-2018-3063
CVE-2018-3064
CVE-2018-3066
CVE-2018-3143
CVE-2018-3156
CVE-2018-3174
CVE-2018-3251
CVE-2018-3282
CVE-2019-10218
CVE-2019-11091
CVE-2019-11477
CVE-2019-11478
CVE-2019-11487
CVE-2019-12519
CVE-2019-12520
CVE-2019-12521
CVE-2019-12524
CVE-2019-15165
CVE-2019-20807
CVE-2019-20810
CVE-2019-20812
CVE-2019-2529
CVE-2019-2537
CVE-2019-3814
CVE-2019-3846
CVE-2019-7524
CVE-2020-0305
CVE-2020-10135
CVE-2020-10543
CVE-2020-10711
CVE-2020-10732
CVE-2020-10751
CVE-2020-10766
CVE-2020-10767
CVE-2020-10768
CVE-2020-10773
CVE-2020-10878
CVE-2020-11945
CVE-2020-12723
CVE-2020-12771
CVE-2020-13974
CVE-2020-14416
CVE-2020-1720
CVE-2020-2654
CVE-2020-2756
CVE-2020-2757
CVE-2020-2781
CVE-2020-2800
CVE-2020-2803
CVE-2020-2805
CVE-2020-2830
SUSE-SU-2019:0900-1
SUSE-SU-2019:1296-1
SUSE-SU-2019:2048-1
SUSE-SU-2019:2893-1
SUSE-SU-2020:0715-1
SUSE-SU-2020:1227-1
SUSE-SU-2020:1662-1
SUSE-SU-2020:1683-1
SUSE-SU-2020:2134-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP4-LTSS
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • ghostscript-9.26a-lp150.2.17 is installed
  • OR ghostscript-devel-9.26a-lp150.2.17 is installed
  • OR ghostscript-mini-9.26a-lp150.2.17 is installed
  • OR ghostscript-mini-devel-9.26a-lp150.2.17 is installed
  • OR ghostscript-x11-9.26a-lp150.2.17 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • libmariadb-devel-3.1.2-lp151.3.3 is installed
  • OR libmariadb3-3.1.2-lp151.3.3 is installed
  • OR libmariadb3-32bit-3.1.2-lp151.3.3 is installed
  • OR libmariadb_plugins-3.1.2-lp151.3.3 is installed
  • OR libmariadbprivate-3.1.2-lp151.3.3 is installed
  • OR libmysqld-devel-10.2.25-lp151.2.3 is installed
  • OR libmysqld19-10.2.25-lp151.2.3 is installed
  • OR mariadb-10.2.25-lp151.2.3 is installed
  • OR mariadb-bench-10.2.25-lp151.2.3 is installed
  • OR mariadb-client-10.2.25-lp151.2.3 is installed
  • OR mariadb-connector-c-3.1.2-lp151.3.3 is installed
  • OR mariadb-errormessages-10.2.25-lp151.2.3 is installed
  • OR mariadb-galera-10.2.25-lp151.2.3 is installed
  • OR mariadb-test-10.2.25-lp151.2.3 is installed
  • OR mariadb-tools-10.2.25-lp151.2.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND ucode-intel-20190514-13.44 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • apache2-2.4.23-29.24 is installed
  • OR apache2-doc-2.4.23-29.24 is installed
  • OR apache2-example-pages-2.4.23-29.24 is installed
  • OR apache2-prefork-2.4.23-29.24 is installed
  • OR apache2-utils-2.4.23-29.24 is installed
  • OR apache2-worker-2.4.23-29.24 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_121-92_104-default-3-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_28-3-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • dhcp-4.3.3-9 is installed
  • OR dhcp-client-4.3.3-9 is installed
  • OR dhcp-relay-4.3.3-9 is installed
  • OR dhcp-server-4.3.3-9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • java-1_7_1-ibm-1.7.1_sr4.50-38.41 is installed
  • OR java-1_7_1-ibm-alsa-1.7.1_sr4.50-38.41 is installed
  • OR java-1_7_1-ibm-jdbc-1.7.1_sr4.50-38.41 is installed
  • OR java-1_7_1-ibm-plugin-1.7.1_sr4.50-38.41 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_162-94_69-default-7-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_21-7-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_178-94_91-default-4-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_25-4-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • libpython2_7-1_0-2.7.13-28.8 is installed
  • OR libpython2_7-1_0-32bit-2.7.13-28.8 is installed
  • OR python-2.7.13-28.8 is installed
  • OR python-32bit-2.7.13-28.8 is installed
  • OR python-base-2.7.13-28.8 is installed
  • OR python-base-32bit-2.7.13-28.8 is installed
  • OR python-curses-2.7.13-28.8 is installed
  • OR python-demo-2.7.13-28.8 is installed
  • OR python-doc-2.7.13-28.8 is installed
  • OR python-doc-pdf-2.7.13-28.8 is installed
  • OR python-gdbm-2.7.13-28.8 is installed
  • OR python-idle-2.7.13-28.8 is installed
  • OR python-tk-2.7.13-28.8 is installed
  • OR python-xml-2.7.13-28.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • cups-1.7.5-20.17 is installed
  • OR cups-client-1.7.5-20.17 is installed
  • OR cups-libs-1.7.5-20.17 is installed
  • OR cups-libs-32bit-1.7.5-20.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-LTSS is installed
  • AND Package Information
  • ghostscript-9.52-23.39 is installed
  • OR ghostscript-x11-9.52-23.39 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND squid-3.5.21-26.23 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND python-Werkzeug-0.12.2-3.3 is installed
  • BACK