Alerts This Week
Warning Icon 1 659
Alerts This Week
Warning Icon 1 659

openSUSE: 2018:4133-1 Important: Kernel Security Update and Fixes

opensuse
Calendar Grey December 15, 2018
Dist Opensuse Esm H88
This release focuses on a significant bug in the Linux Mint kernel, improving overall performance and security through multiple amendments.
An update that solves one vulnerability and has 112 fixes is now available.

Description

The openSUSE Leap 15.0 kernel was updated to 4.12.14-lp150.12.28.1 to

receive various security and bugfixes.

The following security bugs were fixed:

- CVE-2018-18281: The mremap() syscall performs TLB flushes after dropping

pagetable locks. If a syscall such as ftruncate() removes entries from

the pagetables of a task that is in the middle of mremap(), a stale TLB

entry can remain for a short time that permits access to a physical page

after it has been released back to the page allocator and reused.

(bnc#1113769).

The following non-security bugs were fixed:

- ACPI / LPSS: Add alternative ACPI HIDs for Cherry Trail DMA controllers (bsc#1051510).

- ACPI / platform: Add SMB0001 HID to forbidden_id_list (bsc#1051510).

- ACPI / watchdog: Prefer iTCO_wdt always when WDAT table uses RTC SRAM

(bsc#1051510).

- ACPI/APEI: Handle GSIV and GPIO notification types (bsc#1115567).

- ACPI/IORT: Fix...

Read the Full Advisory

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Leap 15.0:

zypper in -t patch openSUSE-2018-1548=1

Package List

- openSUSE Leap 15.0 (noarch):

kernel-devel-4.12.14-lp150.12.28.1

kernel-docs-4.12.14-lp150.12.28.1

kernel-docs-html-4.12.14-lp150.12.28.1

kernel-macros-4.12.14-lp150.12.28.1

kernel-source-4.12.14-lp150.12.28.1

kernel-source-vanilla-4.12.14-lp150.12.28.1

- openSUSE Leap 15.0 (x86_64):

kernel-debug-4.12.14-lp150.12.28.1

kernel-debug-base-4.12.14-lp150.12.28.1

kernel-debug-base-debuginfo-4.12.14-lp150.12.28.1

kernel-debug-debuginfo-4.12.14-lp150.12.28.1

kernel-debug-debugsource-4.12.14-lp150.12.28.1

kernel-debug-devel-4.12.14-lp150.12.28.1

kernel-debug-devel-debuginfo-4.12.14-lp150.12.28.1

kernel-default-4.12.14-lp150.12.28.1

kernel-default-base-4.12.14-lp150.12.28.1

kernel-default-base-debuginfo-4.12.14-lp150.12.28.1

kernel-default-debuginfo-4.12.14-lp150.12.28.1

kernel-default-debugsource-4.12.14-lp150.12.28.1

kernel-default-devel-4.12.14-lp150.12.28.1

kernel-default-devel-debuginfo-4.12.14-lp150.12.28.1

kernel-kvmsmall-4.12.14-lp150.12.28.1

kernel-kvmsmall-base-4.12.14-lp150.12.28.1

kernel-kvmsmall-base-debu...

Read the Full Advisory

References

already applied by the following commit: 9f73db8b7c PCI: dwc: Fix

enumeration end when reaching root subordinate (bsc#1051510)

- pcmcia: Implement CLKRUN protocol disabling for Ricoh bridges

(bsc#1051510).

- percpu: make this_cpu_generic_read() atomic w.r.t. interrupts

(bsc#1114279).

- perf: fix invalid bit in diagnostic entry (git-fixes).

- pinctrl: at91-pio4: fix has_config check in

atmel_pctl_dt_subnode_to_map() (bsc#1051510).

- pinctrl: meson: fix pinconf bias disable (bsc#1051510).

- pinctrl: qcom: spmi-mpp: Fix drive strength setting (bsc#1051510).

- pinctrl: qcom: spmi-mpp: Fix err handling of pmic_mpp_set_mux

(bsc#1051510).

- pinctrl: spmi-mpp: Fix pmic_mpp_config_get() to be compliant

(bsc#1051510).

- pinctrl: ssbi-gpio: Fix pm8xxx_pin_config_get() to be compliant

(bsc#1051510).

- pipe: match pipe_max_size data type with procfs (git-fixes).

- platform/x86: acerhdf: Add BIOS entry for Gateway LT31 v1.3307

(bsc#1051510).

- platform/x86: intel_telemetry: report debugfs failure (bsc#1051510).

- pnfs:...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2018:4133-1
Rating: important
Affected Products: openSUSE Leap 15.0 le.

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here