Revision Date: | 2021-02-10 | Version: | 1 |
Title: | Security update for the Linux Kernel (Live Patch 0 for SLE 15 SP2) (Important) |
Description: |
This update for the Linux Kernel 5.3.18-22 fixes several issues.
The following security issues were fixed:
- CVE-2020-29373: Fixed an issue where kernel unsafely handles the root directory during path lookups, and thus a process inside a mount namespace can escape to unintended filesystem locations (bsc#1179779). - CVE-2020-36158: Fixed a potential remote code execution in the Marvell mwifiex driver (bsc#1180562). - CVE-2020-0465: Fixed multiple missing bounds checks in hid-multitouch.c that could have led to local privilege escalation (bnc#1180030). - CVE-2020-0466: Fixed a use-after-free due to a logic error in do_epoll_ctl and ep_loop_check_proc of eventpoll.c (bnc#1180032. - CVE-2020-29569: Fixed a use after free due to a logic error (bsc#1180008). - CVE-2020-29660: Fixed a locking inconsistency in the tty subsystem that may have allowed a read-after-free attack against TIOCGSID (bsc#1179877). - CVE-2020-29661: Fixed a locking issue in the tty subsystem that allowed a use-after-free attack against TIOCSPGRP (bsc#1179877). - CVE-2020-29368: Fixed an issue in copy-on-write implementation which could grant unintended write access because of a race condition in a THP mapcount check (bsc#1179664).
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1179664 1179779 1179877 1180008 1180030 1180032 1180562 CVE-2006-4484 CVE-2008-4225 CVE-2008-4226 CVE-2008-4409 CVE-2009-1273 CVE-2009-1720 CVE-2009-1721 CVE-2010-4494 CVE-2011-1000 CVE-2011-1761 CVE-2011-1944 CVE-2011-2054 CVE-2011-2199 CVE-2011-2485 CVE-2012-2669 CVE-2012-2738 CVE-2012-5134 CVE-2012-5532 CVE-2013-0338 CVE-2013-1431 CVE-2013-1969 CVE-2013-2131 CVE-2013-4233 CVE-2013-4234 CVE-2013-4238 CVE-2014-0191 CVE-2014-3660 CVE-2014-3970 CVE-2014-9087 CVE-2020-0465 CVE-2020-0466 CVE-2020-29368 CVE-2020-29373 CVE-2020-29569 CVE-2020-29660 CVE-2020-29661 CVE-2020-36158
|
Platform(s): | openSUSE 13.2 openSUSE 13.2 NonFree openSUSE Leap 42.1 SUSE Linux Enterprise Build System Kit 12 SUSE Linux Enterprise Build System Kit 12 SP2 SUSE Linux Enterprise Build System Kit 12 SP3 SUSE Linux Enterprise Build System Kit 12 SP4 SUSE Linux Enterprise Desktop 11 SP2 SUSE Linux Enterprise Desktop 11 SP3 SUSE Linux Enterprise Desktop 11 SP4 SUSE Linux Enterprise Desktop 12 SUSE Linux Enterprise Desktop 12 SP2 SUSE Linux Enterprise Desktop 12 SP3 SUSE Linux Enterprise Desktop 12 SP4 SUSE Linux Enterprise High Availability 12 SUSE Linux Enterprise High Availability 12 SP1 SUSE Linux Enterprise High Performance Computing 15 SP2 SUSE Linux Enterprise Module for Live Patching 15 SP2 SUSE Linux Enterprise Point of Sale 11 SP3 SUSE Linux Enterprise Real Time Extension 11 SP1 SUSE Linux Enterprise Real Time Extension 11 SP4 SUSE Linux Enterprise Server 11 SUSE Linux Enterprise Server 11 SP1-CLIENT-TOOLS SUSE Linux Enterprise Server 11 SP2-LTSS SUSE Linux Enterprise Server 11 SP3 SUSE Linux Enterprise Server 11 SP3-LTSS SUSE Linux Enterprise Server 11 SP4 SUSE Linux Enterprise Server 11-SECURITY SUSE Linux Enterprise Server 12 SUSE Linux Enterprise Server 12 SP1 SUSE Linux Enterprise Server 12 SP1-LTSS SUSE Linux Enterprise Server 12 SP2 SUSE Linux Enterprise Server 12 SP3 SUSE Linux Enterprise Server 12 SP4 SUSE Linux Enterprise Server 12 SP5 SUSE Linux Enterprise Server 12-LTSS SUSE Linux Enterprise Server 15 SP2 SUSE Linux Enterprise Server for Raspberry Pi 12 SP2 SUSE Linux Enterprise Server for SAP Applications 12 SUSE Linux Enterprise Server for SAP Applications 12 SP1 SUSE Linux Enterprise Server for SAP Applications 12 SP2 SUSE Linux Enterprise Server for SAP Applications 15 SP2 SUSE Linux Enterprise Server for VMWare 11 SP3 SUSE Linux Enterprise Software Development Kit 11 SP2 SUSE Linux Enterprise Software Development Kit 11 SP3 SUSE Linux Enterprise Software Development Kit 11 SP4 SUSE Linux Enterprise Software Development Kit 12 SUSE Linux Enterprise Software Development Kit 12 SP2 SUSE Linux Enterprise Software Development Kit 12 SP3 SUSE Linux Enterprise Software Development Kit 12 SP4 SUSE Linux Enterprise Workstation Extension 12 SUSE Linux Enterprise Workstation Extension 12 SP1 SUSE Linux Enterprise Workstation Extension 12 SP2 SUSE Linux Enterprise Workstation Extension 12 SP3 SUSE Linux Enterprise Workstation Extension 12 SP4
| Product(s): | |
Definition Synopsis |
SUSE Linux Enterprise Build System Kit 12 is installed AND kernel-zfcpdump-3.12.32-33 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Build System Kit 12 SP2 is installed
AND kernel-zfcpdump-4.4.59-92.24 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Build System Kit 12 SP3 is installed
AND python-pycrypto-2.6.1-10.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Build System Kit 12 SP4 is installed
AND Package Information
libudev-mini-devel-228-150.53 is installed
OR libudev-mini1-228-150.53 is installed
OR systemd-mini-228-150.53 is installed
OR systemd-mini-devel-228-150.53 is installed
OR udev-mini-228-150.53 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 11 SP2 is installed
AND Package Information
MozillaFirefox-17.0.7esr-0.3.1 is installed
OR MozillaFirefox-branding-SLED-7-0.6.9.31 is installed
OR MozillaFirefox-translations-17.0.7esr-0.3.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 11 SP3 is installed
AND Package Information
augeas-0.9.0-3.17.2 is installed
OR libaugeas0-0.9.0-3.17.2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 11 SP4 is installed
AND Package Information
bind-9.9.6P1-0.25.1 is installed
OR bind-libs-9.9.6P1-0.25.1 is installed
OR bind-libs-32bit-9.9.6P1-0.25.1 is installed
OR bind-utils-9.9.6P1-0.25.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 is installed
AND tcpdump-4.5.1-4 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP2 is installed
AND Package Information
dbus-1-1.8.22-24.8 is installed
OR dbus-1-x11-1.8.22-24.8 is installed
OR libdbus-1-3-1.8.22-24.8 is installed
OR libdbus-1-3-32bit-1.8.22-24.8 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP3 is installed
AND puppet-3.8.5-15.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP4 is installed
AND Package Information
rrdtool-1.4.7-20 is installed
OR rrdtool-cached-1.4.7-20 is installed
|
Definition Synopsis |
SUSE Linux Enterprise High Availability 12 is installed
AND Package Information
ctdb-4.2.4-18.44 is installed
OR samba-4.2.4-18.44 is installed
|
Definition Synopsis |
SUSE Linux Enterprise High Availability 12 SP1 is installed
AND Package Information
libpacemaker3-1.1.13-20 is installed
OR pacemaker-1.1.13-20 is installed
OR pacemaker-cli-1.1.13-20 is installed
OR pacemaker-cts-1.1.13-20 is installed
OR pacemaker-remote-1.1.13-20 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Live Patching 15 SP2 is installed
AND kernel-livepatch-5_3_18-22-default-7-5.2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Point of Sale 11 SP3 is installed
AND Package Information
bind-9.9.6P1-0.36.1 is installed
OR bind-chrootenv-9.9.6P1-0.36.1 is installed
OR bind-doc-9.9.6P1-0.36.1 is installed
OR bind-libs-9.9.6P1-0.36.1 is installed
OR bind-utils-9.9.6P1-0.36.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Real Time Extension 11 SP1 is installed
AND ofed-kmp-rt-1.5.2_2.6.33.18_rt31_0.3-0.9.13.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Real Time Extension 11 SP4 is installed
AND Package Information
kernel-rt-3.0.101.rt130-57.1 is installed
OR kernel-rt-base-3.0.101.rt130-57.1 is installed
OR kernel-rt-devel-3.0.101.rt130-57.1 is installed
OR kernel-rt_trace-3.0.101.rt130-57.1 is installed
OR kernel-rt_trace-base-3.0.101.rt130-57.1 is installed
OR kernel-rt_trace-devel-3.0.101.rt130-57.1 is installed
OR kernel-source-rt-3.0.101.rt130-57.1 is installed
OR kernel-syms-rt-3.0.101.rt130-57.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 11 is installed
AND Package Information
apache2-2.2.10-2.23.22.1 is installed
OR apache2-doc-2.2.10-2.23.22.1 is installed
OR apache2-example-pages-2.2.10-2.23.22.1 is installed
OR apache2-prefork-2.2.10-2.23.22.1 is installed
OR apache2-utils-2.2.10-2.23.22.1 is installed
OR apache2-worker-2.2.10-2.23.22.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 11 SP1-CLIENT-TOOLS is installed
AND Package Information
rhnmd-5.3.7-0.9.1 is installed
OR spacewalk-backend-libs-1.2.74-0.20.1 is installed
OR spacewalk-certs-tools-1.2.2-0.16.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 11 SP2-LTSS is installed
AND wget-1.11.4-1.19.1 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 11 SP3 is installed
AND
MozillaFirefox-24.6.0esr-0.8.1 is installed
OR MozillaFirefox-branding-SLED-24-0.7.48 is installed
OR MozillaFirefox-translations-24.6.0esr-0.8.1 is installed
OR libfreebl3-3.16.1-0.8.1 is installed
OR libfreebl3-32bit-3.16.1-0.8.1 is installed
OR libfreebl3-x86-3.16.1-0.8.1 is installed
OR libsoftokn3-3.16.1-0.8.1 is installed
OR libsoftokn3-32bit-3.16.1-0.8.1 is installed
OR libsoftokn3-x86-3.16.1-0.8.1 is installed
OR mozilla-nspr-4.10.6-0.3.1 is installed
OR mozilla-nspr-32bit-4.10.6-0.3.1 is installed
OR mozilla-nspr-x86-4.10.6-0.3.1 is installed
OR mozilla-nss-3.16.1-0.8.1 is installed
OR mozilla-nss-32bit-3.16.1-0.8.1 is installed
OR mozilla-nss-tools-3.16.1-0.8.1 is installed
OR mozilla-nss-x86-3.16.1-0.8.1 is installed
OR Package Information
SUSE Linux Enterprise Server for VMWare 11 SP3 is installed
AND
MozillaFirefox-24.6.0esr-0.8.1 is installed
OR MozillaFirefox-branding-SLED-24-0.7.48 is installed
OR MozillaFirefox-translations-24.6.0esr-0.8.1 is installed
OR libfreebl3-3.16.1-0.8.1 is installed
OR libfreebl3-32bit-3.16.1-0.8.1 is installed
OR libfreebl3-x86-3.16.1-0.8.1 is installed
OR libsoftokn3-3.16.1-0.8.1 is installed
OR libsoftokn3-32bit-3.16.1-0.8.1 is installed
OR libsoftokn3-x86-3.16.1-0.8.1 is installed
OR mozilla-nspr-4.10.6-0.3.1 is installed
OR mozilla-nspr-32bit-4.10.6-0.3.1 is installed
OR mozilla-nspr-x86-4.10.6-0.3.1 is installed
OR mozilla-nss-3.16.1-0.8.1 is installed
OR mozilla-nss-32bit-3.16.1-0.8.1 is installed
OR mozilla-nss-tools-3.16.1-0.8.1 is installed
OR mozilla-nss-x86-3.16.1-0.8.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 11 SP3-LTSS is installed
AND Package Information
MozillaFirefox-45.2.0esr-45.2 is installed
OR MozillaFirefox-branding-SLED-45.0-23.10 is installed
OR MozillaFirefox-translations-45.2.0esr-45.2 is installed
OR firefox-fontconfig-2.11.0-2.1 is installed
OR libfreebl3-3.21.1-35.1 is installed
OR libfreebl3-32bit-3.21.1-35.1 is installed
OR libsoftokn3-3.21.1-35.1 is installed
OR libsoftokn3-32bit-3.21.1-35.1 is installed
OR mozilla-nspr-4.12-29.1 is installed
OR mozilla-nspr-32bit-4.12-29.1 is installed
OR mozilla-nss-3.21.1-35.1 is installed
OR mozilla-nss-32bit-3.21.1-35.1 is installed
OR mozilla-nss-tools-3.21.1-35.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 11 SP4 is installed
AND Package Information
gpgme-1.1.6-25.32.1 is installed
OR libgpgme11-1.1.6-25.32.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 11-SECURITY is installed
AND Package Information
openssh-openssl1-6.6p1-15.1 is installed
OR openssh-openssl1-helpers-6.6p1-15.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 is installed
AND libmodplug1-0.8.8.4-13 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1 is installed
AND Package Information
gdk-pixbuf-lang-2.30.6-1 is installed
OR gdk-pixbuf-query-loaders-2.30.6-1 is installed
OR gdk-pixbuf-query-loaders-32bit-2.30.6-1 is installed
OR libgdk_pixbuf-2_0-0-2.30.6-1 is installed
OR libgdk_pixbuf-2_0-0-32bit-2.30.6-1 is installed
OR typelib-1_0-GdkPixbuf-2_0-2.30.6-1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1-LTSS is installed
AND Package Information
kgraft-patch-3_12_69-60_64_32-default-5-2.1 is installed
OR kgraft-patch-3_12_69-60_64_32-xen-5-2.1 is installed
OR kgraft-patch-SLE12-SP1_Update_13-5-2.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2 is installed
AND apache-commons-httpclient-3.1-4 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3 is installed
AND apache2-mod_perl-2.0.8-11 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP4 is installed
AND Package Information
audiofile-0.3.6-10 is installed
OR libaudiofile1-0.3.6-10 is installed
OR libaudiofile1-32bit-0.3.6-10 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP5 is installed
AND Package Information
apache-commons-daemon-1.0.15-6 is installed
OR apache-commons-daemon-javadoc-1.0.15-6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12-LTSS is installed
AND Package Information
kgraft-patch-3_12_51-52_31-default-5-2.2 is installed
OR kgraft-patch-3_12_51-52_31-xen-5-2.2 is installed
OR kgraft-patch-SLE12_Update_9-5-2.2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server for Raspberry Pi 12 SP2 is installed
AND Package Information
aaa_base-13.2+git20140911.61c1681-28 is installed
OR aaa_base-extras-13.2+git20140911.61c1681-28 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server for SAP Applications 12 is installed
AND Package Information
kgraft-patch-3_12_44-52_18-default-6-2 is installed
OR kgraft-patch-3_12_44-52_18-xen-6-2 is installed
OR kgraft-patch-SLE12_Update_7-6-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server for SAP Applications 12 SP1 is installed
AND Package Information
compat-openssl098-0.9.8j-102 is installed
OR libopenssl0_9_8-0.9.8j-102 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server for SAP Applications 12 SP2 is installed
AND Package Information
kgraft-patch-4_4_90-92_45-default-7-2 is installed
OR kgraft-patch-SLE12-SP2_Update_14-7-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 11 SP2 is installed
AND Package Information
GraphicsMagick-1.2.5-4.33.1 is installed
OR libGraphicsMagick2-1.2.5-4.33.1 is installed
OR perl-GraphicsMagick-1.2.5-4.33.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 11 SP3 is installed
AND Package Information
MozillaFirefox-31.8.0esr-0.13.2 is installed
OR MozillaFirefox-devel-31.8.0esr-0.13.2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
AND Package Information
xalan-j2-demo-2.7.0-217.26.1 is installed
OR xalan-j2-javadoc-2.7.0-217.26.1 is installed
OR xalan-j2-manual-2.7.0-217.26.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 12 is installed
AND Package Information
gnutls-3.2.15-4 is installed
OR libgnutls-devel-3.2.15-4 is installed
OR libgnutls-openssl-devel-3.2.15-4 is installed
OR libgnutlsxx-devel-3.2.15-4 is installed
OR libgnutlsxx28-3.2.15-4 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 12 SP2 is installed
AND Package Information
libosip2-3.5.0-20 is installed
OR libosip2-devel-3.5.0-20 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 12 SP3 is installed
AND Package Information
libpoppler44-0.24.4-14.6 is installed
OR poppler-0.24.4-14.6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 12 SP4 is installed
AND libXdmcp-devel-1.1.1-12 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 is installed
AND Package Information
ImageMagick-6.8.8.1-5 is installed
OR libMagick++-6_Q16-3-6.8.8.1-5 is installed
OR libMagickCore-6_Q16-1-32bit-6.8.8.1-5 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 SP1 is installed
AND argyllcms-1.6.3-1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 SP2 is installed
AND cyrus-sasl-digestmd5-32bit-2.1.26-7 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 SP3 is installed
AND Package Information
freerdp-2.0.0~git.1463131968.4e66df7-11 is installed
OR libfreerdp2-2.0.0~git.1463131968.4e66df7-11 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 SP4 is installed
AND Package Information
colord-1.3.3-12 is installed
OR colord-lang-1.3.3-12 is installed
|