Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
______________________________________________________________________________
SUSE Security Announcement
Package: kernel
Announcement ID: SUSE-SA:2010:050
Date: Wed, 13 Oct 2010 17:00:00 +0000
Affected Products: SLE 11 SERVER Unsupported Extras
SUSE Linux Enterprise High Availability Extension 11 SP1
SUSE Linux Enterprise Desktop 11 SP1
SUSE Linux Enterprise Server 11 SP1
Vulnerability Type: local privilege escalation
CVSS v2 Base Score: 7.2 (AV:L/AC:L/Au:N/C:C/I:C/A:C)
SUSE Default Package: yes
Cross-References: CVE-2010-2954, CVE-2010-2960, CVE-2010-2962
CVE-2010-3078, CVE-2010-3079, CVE-2010-3080
CVE-2010-3081, CVE-2010-3296, CVE-2010-3297
CVE-2010-3298, CVE-2010-3310
Content of This Advisory:
1) Security Vulnerability Resolved:
Linux kernel security update
Problem Description
2) Solution or Work-Around
3) Special Instructions and Notes
4) Package Location and Checksums
5) Pending Vulnerabilities, Solutions, and Work-Arounds:
See SUSE Security Summary Report.
6) Authenticity Verification and Additional Information
______________________________________________________________________________
1) Problem Description and Brief Discussion
This SUSE Linux Enterprise 11 Service Pack 1 kernel contains various
security fixes and lots of other bugfixes.
Following security issues were fixed:
CVE-2010-2960: local users could crash the system by causing a NULL
deref in the keyctl_session_to_parent() function
CVE-2010-2954: local users could crash the system by causing a NULL
deref via IRDA sockets
CVE-2010-3079: local users could crash the system by causing a NULL
deref in ftrace
CVE-2010-3078, CVE-2010-3297, CVE-2010-3298, CVE-2010-3081,
CVE-2010-3296: several kernel functions could leak kernel stack
memory contents
CVE-2010-3080: local users could cause dereference of an uninitialized
pointer via /dev/sequencer
CVE-2010-3310: local users could corrupt kernel heap memory via
ROSE sockets
CVE-2010-2962: local users could write to any kernel memory location
via the i915 GEM ioctl interface
Additionally this update restores the compat_alloc_userspace()
inline function.
2) Solution or Work-Around
There is no known workaround, please install the update packages.
3) Special Instructions and Notes
Please reboot the machine after installing the update.
4) Package Location and Checksums
The preferred method for installing security updates is to use the YaST
Online Update (YOU) tool. YOU detects which updates are required and
automatically performs the necessary steps to verify and install them.
Alternatively, download the update packages for your distribution manually
and verify their integrity by the methods listed in Section 6 of this
announcement. Then install the packages using the command
rpm -Fhv
Get the latest Linux and open source security news straight to your inbox.