Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

SUSE 2013:1182-1 Critical: Kernel Update Fixes System Crash

suse
Calendar Grey July 11, 2013
Dist Suse Esm H88
Enhancement for SLE 11 SP3 kernel addresses 15 vulnerabilities such as system failures and potential data exposure.
An update that solves 15 vulnerabilities and has 50 fixes An update that solves 15 vulnerabilities and has 50 fixes An update that solves 15 vulnerabilities and has 50 fixes is now...

Summary

The SUSE Linux Enterprise 11 Service Pack 3 kernel was updated to 3.0.82 and to fix various bugs and security issues. Following security issues were fixed: CVE-2013-1774: The chase_port function in drivers/usb/serial/io_ti.c in the Linux kernel allowed local users to cause a denial of service (NULL pointer dereference and system crash) via an attempted /dev/ttyUSB read or write operation on a disconnected Edgeport USB serial converter. CVE-2013-0160: Timing side channel on attacks were possible on /dev/ptmx that could allow local attackers to predict keypresses like e.g. passwords. This has been fixed again by updating accessed/modified time on the pty devices in resolution of 8 seconds, so that idle time detection can still work. CVE-2013-3222: The vcc_recvmsg function in net/atm/common.c

References

#763968 #773837 #785901 #797090 #797727 #801427

#803320 #804482 #804609 #805804 #806976 #808015

#808136 #808837 #808855 #809130 #809895 #809975

#810722 #812281 #812332 #812526 #812974 #813604

#813922 #815356 #816451 #817035 #817377 #818047

#818371 #818465 #819018 #819195 #819523 #819610

#819655 #820172 #820434 #821052 #821070 #821235

#821799 #821859 #821930 #822066 #822077 #822080

#822164 #822340 #822431 #822722 #822825 #823082

#823223 #823342 #823386 #823597 #823795 #824159

#825037 #825591 #825657 #825696 #826186

Cross- CVE-2013-0160 CVE-2013-1774 CVE-2013-1979

CVE-2013-3076 CVE-2013-3222 CVE-2013-3223

CVE-2013-3224 CVE-2013-3225 CVE-2013-3227

CVE-2013-3228 CVE-2013-3229 CVE-2013-3231

CVE-2013-3232 C...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2013:1182-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here