Oval Definition:oval:org.opensuse.security:def:68339
Revision Date:2021-06-29Version:1
Title:Security update for the Linux Kernel (Live Patch 0 for SLE 15 SP3) (Important)
Description:

This update for the Linux Kernel 5.3.18-57 fixes several issues.

The following issues were fixed:

- CVE-2021-3489: Fixed an issue where the eBPF RINGBUF bpf_ringbuf_reserve did not check that the allocated size was smaller than the ringbuf size (bsc#1185640). - CVE-2021-3490: Fixed an issue where the eBPF ALU32 bounds tracking for bitwise ops (AND, OR and XOR) did not update the 32-bit bounds (bsc#1185641). - CVE-2021-33034: Fixed a use-after-free when destroying an hci_chan. This could lead to writing an arbitrary values (bsc#1186111). - CVE-2021-32399: Fixed a race condition when removing the HCI controller (bsc#1184611). - CVE-2020-36322: Fixed an issue was discovered in FUSE filesystem implementation which could have caused a system crash (bsc#1184211). - CVE-2021-29154: Fixed incorrect computation of branch displacements, allowing arbitrary code execution (bsc#1184391). - CVE-2021-28660: Fixed an out of bounds write in rtw_wx_set_scan (bsc#1183593). - Fixed a data loss/data corruption that occurs if there is a write error on an md/raid array (bsc#1185847).
Family:unixClass:patch
Status:Reference(s):1049092
1082023
1149792
1158785
1158787
1158788
1158789
1158790
1158791
1158792
1158793
1158795
1183658
1184710
1184952
1185796
1185847
1185856
1185899
1186285
CVE-2017-9814
CVE-2019-1348
CVE-2019-1349
CVE-2019-1350
CVE-2019-1351
CVE-2019-1352
CVE-2019-1353
CVE-2019-1354
CVE-2019-1387
CVE-2019-19604
CVE-2020-36322
CVE-2021-28660
CVE-2021-29154
CVE-2021-32399
CVE-2021-33034
CVE-2021-3489
CVE-2021-3490
SUSE-SU-2020:0045-1
SUSE-SU-2020:1937-1
SUSE-SU-2021:2198-1
Platform(s):SUSE Linux Enterprise High Performance Computing 15 SP3
SUSE Linux Enterprise Micro 5.1
SUSE Linux Enterprise Module for Basesystem 15 SP1
SUSE Linux Enterprise Module for Live Patching 15 SP3
SUSE Linux Enterprise Server 15 SP3
SUSE Linux Enterprise Server for SAP Applications 15 SP3
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
  • AND Package Information
  • cairo-1.16.0-4.8 is installed
  • OR cairo-devel-1.16.0-4.8 is installed
  • OR libcairo-gobject2-1.16.0-4.8 is installed
  • OR libcairo-script-interpreter2-1.16.0-4.8 is installed
  • OR libcairo2-1.16.0-4.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Live Patching 15 SP3 is installed
  • AND kernel-livepatch-5_3_18-57-default-2-3.1 is installed
  • BACK