Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
The SUSE Linux Enterprise 15 SP3 kernel was updated to receive various
security and bugfixes.
The following security bugs were fixed:
- CVE-2021-3573: Fixed an UAF vulnerability in function that can allow
attackers to corrupt kernel heaps and adopt further exploitations.
(bsc#1186666)
- CVE-2021-0605: Fixed an out-of-bounds read which could lead to local
information disclosure in the kernel with System execution privileges
needed. (bsc#1187601)
- CVE-2021-0512: Fixed a possible out-of-bounds write which could lead to
local escalation of privilege with no additional execution privileges
needed. (bsc#1187595)
- CVE-2021-33624: Fixed a bug which allows unprivileged BPF program to
leak the contents of arbitrary kernel memory (and therefore, of all
physical memory) via a side-channel. (bsc#1187554)
- CVE-2021-34693: Fixed a bug in net/can/bcm.c which could allow local
users to obtain sensitive information from kernel...
Read the Full AdvisoryPatch Instructions:
To install this openSUSE Security Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.3:
zypper in -t patch openSUSE-SLE-15.3-2021-2352=1
- openSUSE Leap 15.3 (aarch64 ppc64le s390x x86_64):
cluster-md-kmp-default-5.3.18-59.13.1
cluster-md-kmp-default-debuginfo-5.3.18-59.13.1
dlm-kmp-default-5.3.18-59.13.1
dlm-kmp-default-debuginfo-5.3.18-59.13.1
gfs2-kmp-default-5.3.18-59.13.1
gfs2-kmp-default-debuginfo-5.3.18-59.13.1
kernel-default-5.3.18-59.13.1
kernel-default-base-5.3.18-59.13.1.18.6.1
kernel-default-base-rebuild-5.3.18-59.13.1.18.6.1
kernel-default-debuginfo-5.3.18-59.13.1
kernel-default-debugsource-5.3.18-59.13.1
kernel-default-devel-5.3.18-59.13.1
kernel-default-devel-debuginfo-5.3.18-59.13.1
kernel-default-extra-5.3.18-59.13.1
kernel-default-extra-debuginfo-5.3.18-59.13.1
kernel-default-livepatch-5.3.18-59.13.1
kernel-default-livepatch-devel-5.3.18-59.13.1
kernel-default-optional-5.3.18-59.13.1
kernel-default-optional-debuginfo-5.3.18-59.13.1
kernel-obs-build-5.3.18-59.13.1
kernel-obs-build-debugsource-5.3.18-59.13.1
kernel-obs-qa-5.3.18-59.13.1
kernel-syms-5.3.18-59.13.1
kselftests-kmp-default-5.3.18-59.13.1
kselftests-kmp-default-debug...
Read the Full Advisoryhttps://www.suse.com/security/cve/CVE-2021-0512.html
https://www.suse.com/security/cve/CVE-2021-0605.html
https://https://www.suse.com/security/cve/CVE-2021-33624.html
https://www.suse.com/security/cve/CVE-2021-34693.html
https://www.suse.com/security/cve/CVE-2021-3573.html
https://bugzilla.suse.com/1152489
https://bugzilla.suse.com/1153274
https://bugzilla.suse.com/1154353
https://bugzilla.suse.com/1155518
https://bugzilla.suse.com/1164648
https://bugzilla.suse.com/1176447
https://bugzilla.suse.com/1176774
https://bugzilla.suse.com/1176919
https://bugzilla.suse.com/1177028
https://bugzilla.suse.com/1178134
https://bugzilla.suse.com/1182470
https://bugzilla.suse.com/1184212
https://bugzilla.suse.com/1184685
https://bugzilla.suse.com/1185486
https://bugzilla.suse.com/1185675
https://bugzilla.suse.com/1185677
https://bugzilla.suse.com/1186206
https://bugzilla.suse.com/1186666
https://bugzilla.suse.com/1186949
https://bugzilla.suse.com/1187171
https://bugzilla.suse.com/1187263
https://bugzilla.suse.com/1187356
http...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.