Alerts This Week
Warning Icon 1 666
Alerts This Week
Warning Icon 1 666

SUSE: 2012:0153-1 Important: Kernel Update Fixes Multiple Issues

suse
Calendar Grey February 6, 2012
Dist Suse Esm H88
SUSE: 2013:0217-2 critical: security patch for the Linux Kernel, addressing 12 vulnerabilities with 34 remedies.
An update that solves 10 vulnerabilities and has 29 fixes An update that solves 10 vulnerabilities and has 29 fixes An update that solves 10 vulnerabilities and has 29 fixes is now...

Summary

The SUSE Linux Enterprise 11 SP1 kernel has been updated to 2.6.32.54, fixing numerous bugs and security issues. The following security issues have been fixed: * A potential hypervisor escape by issuing SG_IO commands to partitiondevices was fixed by restricting access to these commands. ( CVE-2011-4127 ) * KEYS: Fix a NULL pointer deref in the user-defined key type, which allowed local attackers to Oops the kernel. (CVE-2011-4110 ) * Avoid potential NULL pointer deref in ghash, which allowed local attackers to Oops the kernel. (CVE-2011-4081 ) * Fixed a memory corruption possibility in xfs

References

#651219 #653260 #668872 #671479 #688996 #694945

#697920 #703156 #706973 #707288 #708625 #711378

#716023 #722910 #724734 #725709 #726600 #726788

#728339 #728626 #729854 #730118 #731004 #731770

#732296 #732677 #733146 #733863 #734056 #735216

#735446 #735453 #735635 #736018 #738400 #740535

#740703 #740867 #742270

Cross- CVE-2010-3873 CVE-2010-4164 CVE-2011-2494

CVE-2011-2699 CVE-2011-4077 CVE-2011-4081

CVE-2011-4110 CVE-2011-4127 CVE-2011-4132

CVE-2012-0038

Affected Products:

SUSE Linux Enterprise Server 11 SP1 for VMware

SUSE Linux Enterprise Server 11 SP1

SUSE Linux Enterprise High Availability Extension 11 SP1

SUSE Linux Enterprise Desktop 11 SP1

https://www.suse.com/security/cve/CVE-2010-3873.html

https://www.suse.com/s...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2012:0153-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here