The SUSE Linux Enterprise 11 SP3 Realtime kernel was updated to receive various security and bugfixes. The following feature was added for RT: - FATE#317131: The SocketCAN (Peak PCI) driver was added for CAN bus support. Following security bugs were fixed: - CVE-2015-5707: An integer overflow in the SCSI generic driver could be potentially used by local attackers to crash the kernel or execute code (bsc#940338). - CVE-2015-5364: A remote denial of service (hang) via UDP flood with incorrect package checksums was fixed. (bsc#936831). - CVE-2015-5366: A remote denial of service (unexpected error returns) via UDP flood with incorrect package checksums was fixed. (bsc#936831). - CVE-2015-1420: A race condition in the handle_to_path function in fs/fhandle.c in the Linux kernel allowed local users to bypass intended
#851068 #867362 #873385 #883380 #886785 #894936
#915517 #917830 #919463 #920110 #920250 #920733
#921430 #923245 #924701 #925705 #925881 #925903
#926240 #926953 #927355 #927786 #929142 #929143
#930092 #930761 #930934 #931538 #932348 #932458
#933429 #933896 #933904 #933907 #933936 #934742
#934944 #935053 #935572 #935705 #935866 #935906
#936077 #936423 #936637 #936831 #936875 #936925
#937032 #937402 #937444 #937503 #937641 #937855
#939910 #939994 #940338 #940398 #942350
Cross- CVE-2014-9728 CVE-2014-9729 CVE-2014-9730
CVE-2014-9731 CVE-2015-0777 CVE-2015-1420
CVE-2015-1805 CVE-2015-2150 CVE-2015-2830
CVE-2015-4167 CVE-2015-4700 CVE-2015-5364
CVE-2015-5366 CVE-2015-5707
Affected Products:
SUSE Linux Enterpr...
Read the Full Advisory
Get the latest Linux and open source security news straight to your inbox.