Alerts This Week
Warning Icon 1 619
Alerts This Week
Warning Icon 1 619

openSUSE Leap 15.2: 2021:1365-1 Important: Kernel Security Issues

opensuse
Calendar Grey October 18, 2021
Dist Opensuse Esm H88
A crucial patch for Fedora tackles 5 vulnerabilities within the Linux kernel, enhancing the security posture of the system.
An update that solves 6 vulnerabilities and has 44 fixes is now available

Description

The SUSE Linux Enterprise 15 SP2 kernel was updated.

The following security bugs were fixed:

- CVE-2020-3702: Fixed a bug which could be triggered with specifically

timed and handcrafted traffic and cause internal errors in a WLAN device

that lead to improper layer 2 Wi-Fi encryption with a consequent

possibility of information disclosure. (bnc#1191193)

- CVE-2021-3752: Fixed a use after free vulnerability in the Linux

kernel's bluetooth module. (bsc#1190023)

- CVE-2021-40490: Fixed a race condition discovered in the ext4 subsystem

that could leat to local priviledge escalation. (bnc#1190159)

- CVE-2021-3744: Fixed a bug which could allows attackers to cause a

denial of service. (bsc#1189884)

- CVE-2021-3764: Fixed a bug which could allows attackers to cause a

denial of service. (bsc#1190534)

- CVE-2021-3669: Fixed a bug that doesn't allow /proc/sysvipc/shm to scale

with large shared memory segment counts which...

Read the Full Advisory

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Leap 15.2:

zypper in -t patch openSUSE-2021-1365=1

Package List

- openSUSE Leap 15.2 (i586 x86_64):

kmod-25-lp152.8.3.1

kmod-compat-25-lp152.8.3.1

kmod-debuginfo-25-lp152.8.3.1

kmod-debugsource-25-lp152.8.3.1

libkmod-devel-25-lp152.8.3.1

libkmod2-25-lp152.8.3.1

libkmod2-debuginfo-25-lp152.8.3.1

- openSUSE Leap 15.2 (noarch):

kmod-bash-completion-25-lp152.8.3.1

References

https://www.suse.com/security/cve/CVE-2020-3702.html

https://www.suse.com/security/cve/CVE-2021-3669.html

https://www.suse.com/security/cve/CVE-2021-3744.html

https://www.suse.com/security/cve/CVE-2021-3752.html

https://www.suse.com/security/cve/CVE-2021-3764.html

https://www.suse.com/security/cve/CVE-2021-40490.html

https://bugzilla.suse.com/1065729

https://bugzilla.suse.com/1148868

https://bugzilla.suse.com/1152489

https://bugzilla.suse.com/1154353

https://bugzilla.suse.com/1159886

https://bugzilla.suse.com/1167773

https://bugzilla.suse.com/1170774

https://bugzilla.suse.com/1173746

https://bugzilla.suse.com/1176940

https://bugzilla.suse.com/1184439

https://bugzilla.suse.com/1184804

https://bugzilla.suse.com/1185302

https://bugzilla.suse.com/1185677

https://bugzilla.suse.com/1185726

https://bugzilla.suse.com/1185762

https://bugzilla.suse.com/1187167

https://bugzilla.suse.com/1188067

https://bugzilla.suse.com/1188651

https://bugzilla.suse.com/1188986

https://bugzilla.suse.com/1189297

https://bugzilla.suse.com/1...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2021:1365-1
Rating: important
Affected Products: openSUSE Leap 15.2 ble.

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here