Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
The openSUSE 13.2 kernel was updated to receive various security and
bugfixes.
Following security bugs were fixed:
- CVE-2015-3290: A flaw was found in the way the Linux kernels nested NMI
handler and espfix64 functionalities interacted during NMI processing. A
local, unprivileged user could use this flaw to crash the system or,
potentially, escalate their privileges on the system.
- CVE-2015-3212: A race condition flaw was found in the way the Linux
kernels SCTP implementation handled Address Configuration lists when
performing Address Configuration Change (ASCONF). A local attacker could
use this flaw to crash the system via a race condition triggered by
setting certain ASCONF options on a socket.
- CVE-2015-5364: A remote denial of service (hang) via UDP flood with
incorrect package checksums was fixed. (bsc#936831).
- CVE-2015-5366: A remote denial of service (unexpected error returns) via
UDP flood with...
Read the Full AdvisoryPatch Instructions:
To install this openSUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:
- openSUSE 13.2:
zypper in -t patch openSUSE-2015-543=1
To bring your system up-to-date, use "zypper patch".
- openSUSE 13.2 (i686 x86_64):
kernel-debug-3.16.7-24.1
kernel-debug-base-3.16.7-24.1
kernel-debug-base-debuginfo-3.16.7-24.1
kernel-debug-debuginfo-3.16.7-24.1
kernel-debug-debugsource-3.16.7-24.1
kernel-debug-devel-3.16.7-24.1
kernel-debug-devel-debuginfo-3.16.7-24.1
kernel-desktop-3.16.7-24.1
kernel-desktop-base-3.16.7-24.1
kernel-desktop-base-debuginfo-3.16.7-24.1
kernel-desktop-debuginfo-3.16.7-24.1
kernel-desktop-debugsource-3.16.7-24.1
kernel-desktop-devel-3.16.7-24.1
kernel-ec2-3.16.7-24.1
kernel-ec2-base-3.16.7-24.1
kernel-ec2-base-debuginfo-3.16.7-24.1
kernel-ec2-debuginfo-3.16.7-24.1
kernel-ec2-debugsource-3.16.7-24.1
kernel-ec2-devel-3.16.7-24.1
kernel-vanilla-3.16.7-24.1
kernel-vanilla-debuginfo-3.16.7-24.1
kernel-vanilla-debugsource-3.16.7-24.1
kernel-vanilla-devel-3.16.7-24.1
kernel-xen-3.16.7-24.1
kernel-xen-base-3.16.7-24.1
kernel-xen-base-debuginfo-3.16.7-24.1
kernel-xen-debuginfo-3.16.7-24.1
kernel-xen-debugsource-3.16.7-24.1
kernel-xen-devel-3.16.7-24.1
- openSUSE 13.2 (i586 x86_64):
bbswitch-0.8...
Read the Full Advisoryhttps://www.suse.com/security/cve/CVE-2014-9728.html
https://www.suse.com/security/cve/CVE-2014-9729.html
https://www.suse.com/security/cve/CVE-2014-9730.html
https://www.suse.com/security/cve/CVE-2014-9731.html
https://www.suse.com/security/cve/CVE-2015-1420.html
https://www.suse.com/security/cve/CVE-2015-1465.html
https://www.suse.com/security/cve/CVE-2015-2041.html
https://www.suse.com/security/cve/CVE-2015-2922.html
https://www.suse.com/security/cve/CVE-2015-3212.html
https://www.suse.com/security/cve/CVE-2015-3290.html
https://www.suse.com/security/cve/CVE-2015-3339.html
https://www.suse.com/security/cve/CVE-2015-3636.html
https://www.suse.com/security/cve/CVE-2015-4001.html
https://www.suse.com/security/cve/CVE-2015-4002.html
https://www.suse.com/security/cve/CVE-2015-4003.html
https://www.suse.com/security/cve/CVE-2015-4036.html
https://www.suse.com/security/cve/CVE-2015-4167.html
https://www.suse.com/security/cve/CVE-2015-4692.html
https://www.suse.com/security/cve/CVE-2015-4700.html
https://www....
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.