The openSUSE Leap 42.3 kernel was updated to 4.4.79 to receive various
security and bugfixes.
The following security bugs were fixed:
- CVE-2017-7542: The ip6_find_1stfragopt function in
net/ipv6/output_core.c in the Linux kernel allowed local users to cause
a denial of service (integer overflow and infinite loop) by leveraging
the ability to open a raw socket (bnc#1049882).
- CVE-2017-11473: Buffer overflow in the mp_override_legacy_irq() function
in arch/x86/kernel/acpi/boot.c in the Linux kernel allowed local users to gain privileges via a crafted ACPI table (bnc#1049603).
- CVE-2017-7533: A bug in inotify code allowed local users to escalate
privilege (bnc#1049483).
- CVE-2017-7541: The brcmf_cfg80211_mgmt_tx function in
drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c in the Linux
kernel allowed local users to cause a denial of service (buffer overflow
and system crash) or possibly gain privileges...
Read the Full AdvisoryPatch Instructions:
To install this openSUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:
- openSUSE Leap 42.3:
zypper in -t patch openSUSE-2017-890=1
To bring your system up-to-date, use "zypper patch".
- openSUSE Leap 42.3 (noarch):
kernel-devel-4.4.79-4.2
kernel-docs-4.4.79-4.2
kernel-docs-html-4.4.79-4.2
kernel-docs-pdf-4.4.79-4.2
kernel-macros-4.4.79-4.2
kernel-source-4.4.79-4.2
kernel-source-vanilla-4.4.79-4.2
- openSUSE Leap 42.3 (x86_64):
kernel-debug-4.4.79-4.2
kernel-debug-base-4.4.79-4.2
kernel-debug-base-debuginfo-4.4.79-4.2
kernel-debug-debuginfo-4.4.79-4.2
kernel-debug-debugsource-4.4.79-4.2
kernel-debug-devel-4.4.79-4.2
kernel-debug-devel-debuginfo-4.4.79-4.2
kernel-default-4.4.79-4.2
kernel-default-base-4.4.79-4.2
kernel-default-base-debuginfo-4.4.79-4.2
kernel-default-debuginfo-4.4.79-4.2
kernel-default-debugsource-4.4.79-4.2
kernel-default-devel-4.4.79-4.2
kernel-obs-build-4.4.79-4.2
kernel-obs-build-debugsource-4.4.79-4.2
kernel-obs-qa-4.4.79-4.2
kernel-syms-4.4.79-4.2
kernel-vanilla-4.4.79-4.2
kernel-vanilla-base-4.4.79-4.2
kernel-vanilla-base-debuginfo-4.4.79-4.2
kernel-vanilla-debuginfo-4.4.79-4.2
kernel-vanilla-debugsource-4.4.79-4.2
kernel-vanilla-devel-4.4.79-4.2
https://www.suse.com/security/cve/CVE-2017-11473.html
https://www.suse.com/security/cve/CVE-2017-7533.html
https://www.suse.com/security/cve/CVE-2017-7541.html
https://www.suse.com/security/cve/CVE-2017-7542.html
https://bugzilla.suse.com/1005778
https://bugzilla.suse.com/1011913
https://bugzilla.suse.com/1012829
https://bugzilla.suse.com/1013887
https://bugzilla.suse.com/1016119
https://bugzilla.suse.com/1019695
https://bugzilla.suse.com/1022476
https://bugzilla.suse.com/1022600
https://bugzilla.suse.com/1022604
https://bugzilla.suse.com/1028286
https://bugzilla.suse.com/1030552
https://bugzilla.suse.com/1031717
https://bugzilla.suse.com/1033587
https://bugzilla.suse.com/1036215
https://bugzilla.suse.com/1036632
https://bugzilla.suse.com/1037838
https://bugzilla.suse.com/1039153
https://bugzilla.suse.com/1040347
https://bugzilla.suse.com/1042257
https://bugzilla.suse.com/1042286
https://bugzilla.suse.com/1042422
https://bugzilla.suse.com/1043598
https://bugzilla.suse.com/1044443
https://bugzilla.suse.com/104462...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.