[SUSE-SU-2018:1004-1] Security update for the Linux Kernel (Live Patch 16 for SLE 12 SP2)

Severity Important
Affected Packages 1
CVEs 4

Security update for the Linux Kernel (Live Patch 16 for SLE 12 SP2)

This update for the Linux Kernel 4.4.103-92_53 fixes several issues.

The following security issues were fixed:

  • CVE-2017-13166: Prevent elevation of privilege vulnerability in the v4l2 video driver (bsc#1085447).
  • CVE-2018-1068: A flaw in the implementation of 32-bit syscall interface for bridging allowed a privileged user to arbitrarily write to a limited range of kernel memory (bsc#1085114).
  • CVE-2018-7566: Prevent buffer overflow via an SNDRV_SEQ_IOCTL_SET_CLIENT_POOL ioctl write operation to /dev/snd/seq by a local user (bsc#1083488).
  • CVE-2018-1000004: Prevent race condition in the sound system that could have lead to a deadlock and denial of service condition (bsc#1076017).
ID
SUSE-SU-2018:1004-1
Severity
important
URL
https://www.suse.com/support/update/announcement/2018/suse-su-20181004-1/
Published
2018-04-20T08:21:50
(6 years ago)
Modified
2018-04-20T08:21:50
(6 years ago)
Rights
Copyright 2024 SUSE LLC. All rights reserved.
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/suse/kgraft-patch-4_4_103-92_53-default?arch=x86_64&distro=sles-12&sp=2 suse kgraft-patch-4_4_103-92_53-default < 4-2.2 sles-12 x86_64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...