Alerts This Week
Warning Icon 1 609
Alerts This Week
Warning Icon 1 609

SUSE Linux 11 SP3 Advisory: 2014:1695-2 Critical Kernel Update

suse
Calendar Grey January 14, 2015
Dist Suse Esm H88
SUSE's latest Security Update addresses 22 vulnerabilities within the Linux kernel framework, mitigating severe exploit risks and system instability concerns.
An update that solves 24 vulnerabilities and has 28 fixes An update that solves 24 vulnerabilities and has 28 fixes An update that solves 24 vulnerabilities and has 28 fixes is now...

Summary

The SUSE Linux Enterprise 11 Service Pack 3 kernel has been updated to fix various bugs and security issues. The following security bugs have been fixed: * CVE-2012-4398: The __request_module function in kernel/kmod.c in the Linux kernel before 3.4 did not set a certain killable attribute, which allowed local users to cause a denial of service (memory consumption) via a crafted application (bnc#779488). * CVE-2013-2889: drivers/hid/hid-zpff.c in the Human Interface Device (HID) subsystem in the Linux kernel through 3.11, when CONFIG_HID_ZEROPLUS is enabled, allowed physically proximate attackers to cause a denial of service (heap-based out-of-bounds write) via a crafted device (bnc#835839). * CVE-2013-2893: The Human Interface Device (HID) subsystem in the

References

#755743 #779488 #800255 #835839 #851603 #853040

#857643 #860441 #868049 #873228 #876633 #883724

#883948 #885077 #887418 #888607 #891211 #891368

#891790 #892782 #893758 #894058 #894895 #895387

#895468 #896382 #896390 #896391 #896392 #896415

#897502 #897694 #897708 #898295 #898375 #898554

#899192 #899574 #899843 #901638 #902346 #902349

#903331 #903653 #904013 #904358 #904700 #905100

#905522 #907818 #909077 #910251

Cross- CVE-2012-4398 CVE-2013-2889 CVE-2013-2893

CVE-2013-2897 CVE-2013-2899 CVE-2013-7263

CVE-2014-3181 CVE-2014-3184 CVE-2014-3185

CVE-2014-3186 CVE-2014-3601 CVE-2014-3610

CVE-2014-3646 CVE-2014-3647 CVE-2014-3673

CVE-2014-4508 CVE-2014-4608 CVE-2014-7826

CVE-2014-7841 CVE-2014-8133 CVE-2014-...

Read the Full Advisory

Severity
critical
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2014:1695-2
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here