Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

openSUSE: 2021:1076-1 Important: Linux Kernel Critical Threat

opensuse
Calendar Grey July 22, 2021
Dist Opensuse Esm H88
urgent Ubuntu 20.04 Kernel Patch: Resolves 3 vulnerabilities and 18 bugs. Restart advised after applying.
An update that solves 5 vulnerabilities and has 24 fixes is now available

Description

The openSUSE Leap 15.2 kernel was updated to receive various security and

bugfixes.

The following security bugs were fixed:

- CVE-2021-22555: A heap out-of-bounds write affecting Linux was

discovered in net/netfilter/x_tables.c (bnc#1188116).

- CVE-2021-33909: fs/seq_file.c did not properly restrict seq buffer

allocations, leading to an integer overflow, an Out-of-bounds Write, and

escalation to root by an unprivileged user, aka CID-8cae8cd89f05

(bnc#1188062).

- CVE-2021-3609: A use-after-free in can/bcm could have led to privilege

escalation (bsc#1187215).

- CVE-2021-3612: An out-of-bounds memory write flaw was found in the

joystick devices subsystem in versions before 5.9-rc1, in the way the

user calls ioctl JSIOCSBTNMAP. This flaw allowed a local user to crash

the system or possibly escalate their privileges on the system. The

highest threat from this vulnerability is to confidentiality, integrity,

as well...

Read the Full Advisory

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Leap 15.2:

zypper in -t patch openSUSE-2021-1076=1

Package List

- openSUSE Leap 15.2 (noarch):

kernel-devel-5.3.18-lp152.84.1

kernel-docs-5.3.18-lp152.84.1

kernel-docs-html-5.3.18-lp152.84.1

kernel-macros-5.3.18-lp152.84.1

kernel-source-5.3.18-lp152.84.1

kernel-source-vanilla-5.3.18-lp152.84.1

- openSUSE Leap 15.2 (x86_64):

kernel-debug-5.3.18-lp152.84.1

kernel-debug-debuginfo-5.3.18-lp152.84.1

kernel-debug-debugsource-5.3.18-lp152.84.1

kernel-debug-devel-5.3.18-lp152.84.1

kernel-debug-devel-debuginfo-5.3.18-lp152.84.1

kernel-default-5.3.18-lp152.84.1

kernel-default-base-5.3.18-lp152.84.1.lp152.8.38.1

kernel-default-base-rebuild-5.3.18-lp152.84.1.lp152.8.38.1

kernel-default-debuginfo-5.3.18-lp152.84.1

kernel-default-debugsource-5.3.18-lp152.84.1

kernel-default-devel-5.3.18-lp152.84.1

kernel-default-devel-debuginfo-5.3.18-lp152.84.1

kernel-kvmsmall-5.3.18-lp152.84.1

kernel-kvmsmall-debuginfo-5.3.18-lp152.84.1

kernel-kvmsmall-debugsource-5.3.18-lp152.84.1

kernel-kvmsmall-devel-5.3.18-lp152.84.1

kernel-kvmsmall-devel-debuginfo-5.3.18-lp152.84.1

kernel-obs-build-5.3.18-lp152.8...

Read the Full Advisory

References

https://www.suse.com/security/cve/CVE-2021-22555.html

https://www.suse.com/security/cve/CVE-2021-33909.html

https://www.suse.com/security/cve/CVE-2021-35039.html

https://www.suse.com/security/cve/CVE-2021-3609.html

https://www.suse.com/security/cve/CVE-2021-3612.html

https://bugzilla.suse.com/1065729

https://bugzilla.suse.com/1085224

https://bugzilla.suse.com/1094840

https://bugzilla.suse.com/1152472

https://bugzilla.suse.com/1152489

https://bugzilla.suse.com/1155518

https://bugzilla.suse.com/1170511

https://bugzilla.suse.com/1176940

https://bugzilla.suse.com/1179243

https://bugzilla.suse.com/1180092

https://bugzilla.suse.com/1183871

https://bugzilla.suse.com/1184114

https://bugzilla.suse.com/1184804

https://bugzilla.suse.com/1185308

https://bugzilla.suse.com/1185791

https://bugzilla.suse.com/1186206

https://bugzilla.suse.com/1187215

https://bugzilla.suse.com/1187585

https://bugzilla.suse.com/1188036

https://bugzilla.suse.com/1188062

https://bugzilla.suse.com/1188080

https://bugzilla.suse.com/1188116

https://bug...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2021:1076-1
Rating: important
Affected Products: openSUSE Leap 15.2 ble.

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here