[SUSE-SU-2019:1948-1] Security update for the Linux Kernel (Live Patch 25 for SLE 12 SP3)

Severity Important
Affected Packages 33
CVEs 3

Security update for the Linux Kernel (Live Patch 25 for SLE 12 SP3)

This update for the Linux Kernel 4.4.178-94_91 fixes several issues.

The following security issues were fixed:

  • CVE-2019-11477: Jonathan Looney discovered that the TCP_SKB_CB(skb)->tcp_gso_segs value was subject to an integer overflow when handling TCP Selective Acknowledgments (SACKs). A remote attacker could use this to cause a denial of service. (bsc#1137586)
  • CVE-2019-11478: Jonathan Looney discovered that the TCP retransmission queue implementation in tcp_fragment could be fragmented when handling certain TCP Selective Acknowledgment (SACK) sequences. A remote attacker could use this to cause a denial of service. (bsc#1137586)
  • CVE-2019-3846: A flaw that allowed an attacker to corrupt memory and possibly escalate privileges was found in the mwifiex kernel module while connecting to a malicious wireless network (bsc#1136424).

This update contains a regression fix for CVE-2019-11477 and CVE-2019-11478 (bsc#1140747).

Package Affected Version
pkg:rpm/suse/kgraft-patch-4_4_178-94_91-default?arch=x86_64&distro=sles-12&sp=3 < 3-2.1
pkg:rpm/suse/kgraft-patch-4_4_178-94_91-default?arch=ppc64le&distro=sles-12&sp=3 < 3-2.1
pkg:rpm/suse/kgraft-patch-4_4_176-94_88-default?arch=x86_64&distro=sles-12&sp=3 < 3-2.1
pkg:rpm/suse/kgraft-patch-4_4_176-94_88-default?arch=ppc64le&distro=sles-12&sp=3 < 3-2.1
pkg:rpm/suse/kgraft-patch-4_4_175-94_79-default?arch=x86_64&distro=sles-12&sp=3 < 4-2.1
pkg:rpm/suse/kgraft-patch-4_4_175-94_79-default?arch=ppc64le&distro=sles-12&sp=3 < 4-2.1
pkg:rpm/suse/kgraft-patch-4_4_162-94_72-default?arch=x86_64&distro=sles-12&sp=3 < 5-2.1
pkg:rpm/suse/kgraft-patch-4_4_162-94_72-default?arch=ppc64le&distro=sles-12&sp=3 < 5-2.1
pkg:rpm/suse/kgraft-patch-4_4_162-94_69-default?arch=x86_64&distro=sles-12&sp=3 < 5-2.1
pkg:rpm/suse/kgraft-patch-4_4_162-94_69-default?arch=ppc64le&distro=sles-12&sp=3 < 5-2.1
pkg:rpm/suse/kgraft-patch-4_4_156-94_64-default?arch=x86_64&distro=sles-12&sp=3 < 6-2.1
pkg:rpm/suse/kgraft-patch-4_4_156-94_64-default?arch=ppc64le&distro=sles-12&sp=3 < 6-2.1
pkg:rpm/suse/kgraft-patch-4_4_156-94_61-default?arch=x86_64&distro=sles-12&sp=3 < 7-2.1
pkg:rpm/suse/kgraft-patch-4_4_156-94_61-default?arch=ppc64le&distro=sles-12&sp=3 < 7-2.1
pkg:rpm/suse/kgraft-patch-4_4_156-94_57-default?arch=x86_64&distro=sles-12&sp=3 < 7-2.1
pkg:rpm/suse/kgraft-patch-4_4_156-94_57-default?arch=ppc64le&distro=sles-12&sp=3 < 7-2.1
pkg:rpm/suse/kgraft-patch-4_4_155-94_50-default?arch=x86_64&distro=sles-12&sp=3 < 7-2.1
pkg:rpm/suse/kgraft-patch-4_4_155-94_50-default?arch=ppc64le&distro=sles-12&sp=3 < 7-2.1
pkg:rpm/suse/kgraft-patch-4_4_143-94_47-default?arch=x86_64&distro=sles-12&sp=3 < 7-2.1
pkg:rpm/suse/kgraft-patch-4_4_143-94_47-default?arch=ppc64le&distro=sles-12&sp=3 < 7-2.1
pkg:rpm/suse/kgraft-patch-4_4_140-94_42-default?arch=x86_64&distro=sles-12&sp=3 < 10-2.1
pkg:rpm/suse/kgraft-patch-4_4_140-94_42-default?arch=ppc64le&distro=sles-12&sp=3 < 10-2.1
pkg:rpm/suse/kgraft-patch-4_4_121-92_98-default?arch=x86_64&distro=sles-12&sp=2 < 6-2.1
pkg:rpm/suse/kgraft-patch-4_4_121-92_98-default?arch=ppc64le&distro=sles-12&sp=2 < 6-2.1
pkg:rpm/suse/kgraft-patch-4_4_121-92_95-default?arch=x86_64&distro=sles-12&sp=2 < 7-2.1
pkg:rpm/suse/kgraft-patch-4_4_121-92_95-default?arch=ppc64le&distro=sles-12&sp=2 < 7-2.1
pkg:rpm/suse/kgraft-patch-4_4_121-92_92-default?arch=x86_64&distro=sles-12&sp=2 < 8-2.1
pkg:rpm/suse/kgraft-patch-4_4_121-92_109-default?arch=x86_64&distro=sles-12&sp=2 < 4-2.1
pkg:rpm/suse/kgraft-patch-4_4_121-92_109-default?arch=ppc64le&distro=sles-12&sp=2 < 4-2.1
pkg:rpm/suse/kgraft-patch-4_4_121-92_104-default?arch=x86_64&distro=sles-12&sp=2 < 4-2.1
pkg:rpm/suse/kgraft-patch-4_4_121-92_104-default?arch=ppc64le&distro=sles-12&sp=2 < 4-2.1
pkg:rpm/suse/kgraft-patch-4_4_121-92_101-default?arch=x86_64&distro=sles-12&sp=2 < 4-2.1
pkg:rpm/suse/kgraft-patch-4_4_121-92_101-default?arch=ppc64le&distro=sles-12&sp=2 < 4-2.1
ID
SUSE-SU-2019:1948-1
Severity
important
URL
https://www.suse.com/support/update/announcement/2019/suse-su-20191948-1/
Published
2019-07-23T08:08:48
(5 years ago)
Modified
2019-07-23T08:08:48
(5 years ago)
Rights
Copyright 2024 SUSE LLC. All rights reserved.
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/suse/kgraft-patch-4_4_178-94_91-default?arch=x86_64&distro=sles-12&sp=3 suse kgraft-patch-4_4_178-94_91-default < 3-2.1 sles-12 x86_64
Affected pkg:rpm/suse/kgraft-patch-4_4_178-94_91-default?arch=ppc64le&distro=sles-12&sp=3 suse kgraft-patch-4_4_178-94_91-default < 3-2.1 sles-12 ppc64le
Affected pkg:rpm/suse/kgraft-patch-4_4_176-94_88-default?arch=x86_64&distro=sles-12&sp=3 suse kgraft-patch-4_4_176-94_88-default < 3-2.1 sles-12 x86_64
Affected pkg:rpm/suse/kgraft-patch-4_4_176-94_88-default?arch=ppc64le&distro=sles-12&sp=3 suse kgraft-patch-4_4_176-94_88-default < 3-2.1 sles-12 ppc64le
Affected pkg:rpm/suse/kgraft-patch-4_4_175-94_79-default?arch=x86_64&distro=sles-12&sp=3 suse kgraft-patch-4_4_175-94_79-default < 4-2.1 sles-12 x86_64
Affected pkg:rpm/suse/kgraft-patch-4_4_175-94_79-default?arch=ppc64le&distro=sles-12&sp=3 suse kgraft-patch-4_4_175-94_79-default < 4-2.1 sles-12 ppc64le
Affected pkg:rpm/suse/kgraft-patch-4_4_162-94_72-default?arch=x86_64&distro=sles-12&sp=3 suse kgraft-patch-4_4_162-94_72-default < 5-2.1 sles-12 x86_64
Affected pkg:rpm/suse/kgraft-patch-4_4_162-94_72-default?arch=ppc64le&distro=sles-12&sp=3 suse kgraft-patch-4_4_162-94_72-default < 5-2.1 sles-12 ppc64le
Affected pkg:rpm/suse/kgraft-patch-4_4_162-94_69-default?arch=x86_64&distro=sles-12&sp=3 suse kgraft-patch-4_4_162-94_69-default < 5-2.1 sles-12 x86_64
Affected pkg:rpm/suse/kgraft-patch-4_4_162-94_69-default?arch=ppc64le&distro=sles-12&sp=3 suse kgraft-patch-4_4_162-94_69-default < 5-2.1 sles-12 ppc64le
Affected pkg:rpm/suse/kgraft-patch-4_4_156-94_64-default?arch=x86_64&distro=sles-12&sp=3 suse kgraft-patch-4_4_156-94_64-default < 6-2.1 sles-12 x86_64
Affected pkg:rpm/suse/kgraft-patch-4_4_156-94_64-default?arch=ppc64le&distro=sles-12&sp=3 suse kgraft-patch-4_4_156-94_64-default < 6-2.1 sles-12 ppc64le
Affected pkg:rpm/suse/kgraft-patch-4_4_156-94_61-default?arch=x86_64&distro=sles-12&sp=3 suse kgraft-patch-4_4_156-94_61-default < 7-2.1 sles-12 x86_64
Affected pkg:rpm/suse/kgraft-patch-4_4_156-94_61-default?arch=ppc64le&distro=sles-12&sp=3 suse kgraft-patch-4_4_156-94_61-default < 7-2.1 sles-12 ppc64le
Affected pkg:rpm/suse/kgraft-patch-4_4_156-94_57-default?arch=x86_64&distro=sles-12&sp=3 suse kgraft-patch-4_4_156-94_57-default < 7-2.1 sles-12 x86_64
Affected pkg:rpm/suse/kgraft-patch-4_4_156-94_57-default?arch=ppc64le&distro=sles-12&sp=3 suse kgraft-patch-4_4_156-94_57-default < 7-2.1 sles-12 ppc64le
Affected pkg:rpm/suse/kgraft-patch-4_4_155-94_50-default?arch=x86_64&distro=sles-12&sp=3 suse kgraft-patch-4_4_155-94_50-default < 7-2.1 sles-12 x86_64
Affected pkg:rpm/suse/kgraft-patch-4_4_155-94_50-default?arch=ppc64le&distro=sles-12&sp=3 suse kgraft-patch-4_4_155-94_50-default < 7-2.1 sles-12 ppc64le
Affected pkg:rpm/suse/kgraft-patch-4_4_143-94_47-default?arch=x86_64&distro=sles-12&sp=3 suse kgraft-patch-4_4_143-94_47-default < 7-2.1 sles-12 x86_64
Affected pkg:rpm/suse/kgraft-patch-4_4_143-94_47-default?arch=ppc64le&distro=sles-12&sp=3 suse kgraft-patch-4_4_143-94_47-default < 7-2.1 sles-12 ppc64le
Affected pkg:rpm/suse/kgraft-patch-4_4_140-94_42-default?arch=x86_64&distro=sles-12&sp=3 suse kgraft-patch-4_4_140-94_42-default < 10-2.1 sles-12 x86_64
Affected pkg:rpm/suse/kgraft-patch-4_4_140-94_42-default?arch=ppc64le&distro=sles-12&sp=3 suse kgraft-patch-4_4_140-94_42-default < 10-2.1 sles-12 ppc64le
Affected pkg:rpm/suse/kgraft-patch-4_4_121-92_98-default?arch=x86_64&distro=sles-12&sp=2 suse kgraft-patch-4_4_121-92_98-default < 6-2.1 sles-12 x86_64
Affected pkg:rpm/suse/kgraft-patch-4_4_121-92_98-default?arch=ppc64le&distro=sles-12&sp=2 suse kgraft-patch-4_4_121-92_98-default < 6-2.1 sles-12 ppc64le
Affected pkg:rpm/suse/kgraft-patch-4_4_121-92_95-default?arch=x86_64&distro=sles-12&sp=2 suse kgraft-patch-4_4_121-92_95-default < 7-2.1 sles-12 x86_64
Affected pkg:rpm/suse/kgraft-patch-4_4_121-92_95-default?arch=ppc64le&distro=sles-12&sp=2 suse kgraft-patch-4_4_121-92_95-default < 7-2.1 sles-12 ppc64le
Affected pkg:rpm/suse/kgraft-patch-4_4_121-92_92-default?arch=x86_64&distro=sles-12&sp=2 suse kgraft-patch-4_4_121-92_92-default < 8-2.1 sles-12 x86_64
Affected pkg:rpm/suse/kgraft-patch-4_4_121-92_109-default?arch=x86_64&distro=sles-12&sp=2 suse kgraft-patch-4_4_121-92_109-default < 4-2.1 sles-12 x86_64
Affected pkg:rpm/suse/kgraft-patch-4_4_121-92_109-default?arch=ppc64le&distro=sles-12&sp=2 suse kgraft-patch-4_4_121-92_109-default < 4-2.1 sles-12 ppc64le
Affected pkg:rpm/suse/kgraft-patch-4_4_121-92_104-default?arch=x86_64&distro=sles-12&sp=2 suse kgraft-patch-4_4_121-92_104-default < 4-2.1 sles-12 x86_64
Affected pkg:rpm/suse/kgraft-patch-4_4_121-92_104-default?arch=ppc64le&distro=sles-12&sp=2 suse kgraft-patch-4_4_121-92_104-default < 4-2.1 sles-12 ppc64le
Affected pkg:rpm/suse/kgraft-patch-4_4_121-92_101-default?arch=x86_64&distro=sles-12&sp=2 suse kgraft-patch-4_4_121-92_101-default < 4-2.1 sles-12 x86_64
Affected pkg:rpm/suse/kgraft-patch-4_4_121-92_101-default?arch=ppc64le&distro=sles-12&sp=2 suse kgraft-patch-4_4_121-92_101-default < 4-2.1 sles-12 ppc64le
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...