[SUSE-SU-2017:0307-1] Security update for Linux Kernel Live Patch 4 for SLE 12 SP2

Severity Important
CVEs 1

Security update for Linux Kernel Live Patch 4 for SLE 12 SP2

This update for the Linux Kernel fixes one security issue:

  • CVE-2016-10088: The sg implementation in the Linux kernel did not properly restrict write operations in situations where the KERNEL_DS option is set, which allowed local users to read or write to arbitrary kernel memory locations or cause a denial of service (use-after-free) by leveraging access to a /dev/sg device (bsc#1017710).
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...