Alerts This Week
Warning Icon 1 666
Alerts This Week
Warning Icon 1 666

SUSE Linux: 2015:1324-1 Critical: Kernel Update Addresses DoS Concerns

suse
Calendar Grey July 31, 2015
Dist Suse Esm H88
Important SUSE Linux kernel revision addresses significant vulnerabilities and bolsters system security and performance, taking effect right away.
An update that solves 11 vulnerabilities and has 63 fixes An update that solves 11 vulnerabilities and has 63 fixes An update that solves 11 vulnerabilities and has 63 fixes is now...

Summary

The SUSE Linux Enterprise 12 kernel was updated to 3.12.44 to receive various security and bugfixes. These features were added: - mpt2sas: Added Reply Descriptor Post Queue (RDPQ) Array support (bsc#854824). - mpt3sas: Bump mpt3sas driver version to 04.100.00.00 (bsc#854817). Following security bugs were fixed: - CVE-2015-1805: iov overrun for failed atomic copy could have lead to DoS or privilege escalation (bsc#933429). - CVE-2015-3212: A race condition in the way the Linux kernel handled lists of associations in SCTP sockets could have lead to list corruption and kernel panics (bsc#936502). - CVE-2015-4036: DoS via memory corruption in vhost/scsi driver (bsc#931988). - CVE-2015-4167: Linux kernel built with the UDF file system(CONFIG_UDF_FS) support was vulnerable to a crash. It occurred

References

#854817 #854824 #858727 #866911 #867362 #895814

#903279 #907092 #908491 #915183 #917630 #918618

#921430 #924071 #924526 #926369 #926953 #927455

#927697 #927786 #928131 #929475 #929696 #929879

#929974 #930092 #930399 #930579 #930599 #930972

#931124 #931403 #931538 #931620 #931860 #931988

#932348 #932793 #932897 #932898 #932899 #932900

#932967 #933117 #933429 #933637 #933896 #933904

#933907 #934160 #935083 #935085 #935088 #935174

#935542 #935881 #935918 #936012 #936423 #936445

#936446 #936502 #936556 #936831 #936875 #937032

#937087 #937609 #937612 #937613 #937616 #938022

#938023 #938024

Cross- CVE-2014-9728 CVE-2014-9729 CVE-2014-9730

CVE-2014-9731 CVE-2015-1805 CVE-2015-3212

CVE-2015-4036 CVE-2015-41...

Read the Full Advisory

Severity
critical
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2015:1324-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here