Alerts This Week
Warning Icon 1 537
Alerts This Week
Warning Icon 1 537

SUSE Linux 11 SP1 Security Notice: 2012:0616-1 Critical Kernel Crash Fix

suse
Calendar Grey May 14, 2012
Dist Suse Esm H88
The recent update for SUSE Linux Kernel addresses 8 vulnerabilities and introduces 60 new enhancements, aiming to improve overall system reliability and adherence to security standards.
An update that solves 8 vulnerabilities and has 60 fixes is An update that solves 8 vulnerabilities and has 60 fixes is An update that solves 8 vulnerabilities and has 60 fixes is ...

Summary

The SUSE Linux Enterprise 11 SP1 kernel have been updated to the 2.6.32.59 stable release to fix a lot of bugs and security issues. The following security issues have been fixed: * CVE-2012-2133: A use after free bug in hugetlb support could be used by local attackers to crash the system. * CVE-2012-1097: A null pointer dereference bug in the regsets proc file could be used by local attackers to perhaps crash the system. With mmap_min_addr is set and enabled, exploitation is unlikely. * CVE-2012-0879: A reference counting issue in CLONE_IO could be used by local attackers to cause a denial of service (out of memory). * CVE-2012-1090: A file handle leak in CIFS code could be used by local attackers to crash the system. * CVE-2011-1083: Large nested epoll chains could be used by local attackers to cause a denial of service

References

#611264 #617344 #624072 #652942 #668194 #676204

#688079 #693639 #697920 #700449 #704280 #713148

#714507 #716850 #717994 #719793 #720374 #721366

#727834 #729247 #731809 #733761 #734300 #734900

#737326 #738210 #738503 #738528 #738679 #740180

#740895 #740969 #742210 #742358 #743209 #743619

#744163 #744658 #745422 #745699 #745832 #745929

#746980 #747028 #747430 #747445 #748112 #748279

#748812 #749342 #749569 #749886 #750079 #750171

#751322 #751844 #751880 #752491 #752634 #752972

#755178 #755537 #756448 #756840 #757917 #758532

#758813 #759544

Cross- CVE-2011-1083 CVE-2011-4086 CVE-2011-4622

CVE-2012-0045 CVE-2012-0879 CVE-2012-1090

CVE-2012-1097 CVE-2012-2133

Affected Products:

SUSE Linux Enterprise Server...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2012:0616-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here