Oval Definition:oval:org.opensuse.security:def:84843
Revision Date:2017-12-06Version:1
Title:Security update for the Linux Kernel (Important)
Description:





The SUSE Linux Enterprise 12 SP3 kernel was updated to receive various security and bugfixes.

The following security bugs were fixed:

- CVE-2017-1000405: A bug in the THP CoW support could be used by local attackers to corrupt memory of other processes and cause them to crash (bnc#1069496). - CVE-2017-16939: The XFRM dump policy implementation in net/xfrm/xfrm_user.c in the Linux kernel allowed local users to gain privileges or cause a denial of service (use-after-free) via a crafted SO_RCVBUF setsockopt system call in conjunction with XFRM_MSG_GETPOLICY Netlink messages (bnc#1069702).

The following non-security bugs were fixed:

Fix a build issue on ppc64le systems (bsc#1070805)

Family:unixClass:patch
Status:Reference(s):1069496
1069702
1070805
CVE-2017-1000405
CVE-2017-16939
SUSE-SU-2017:3225-1
Platform(s):SUSE Linux Enterprise Server 12 SP3
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • kernel-default-4.4.92-6.30.1 is installed
  • OR kernel-default-base-4.4.92-6.30.1 is installed
  • OR kernel-default-devel-4.4.92-6.30.1 is installed
  • OR kernel-default-man-4.4.92-6.30.1 is installed
  • OR kernel-devel-4.4.92-6.30.1 is installed
  • OR kernel-macros-4.4.92-6.30.1 is installed
  • OR kernel-source-4.4.92-6.30.1 is installed
  • OR kernel-syms-4.4.92-6.30.1 is installed
  • BACK