Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

SUSE 11-SP3: 2015:2108-1 Important: Kernel Denial of Service Fix

suse
Calendar Grey November 26, 2015
Dist Suse Esm H88
SUSE Security Notice regarding the Linux Kernel highlights various vulnerabilities and offers critical patches to enhance system security.
An update that solves 8 vulnerabilities and has 51 fixes is An update that solves 8 vulnerabilities and has 51 fixes is An update that solves 8 vulnerabilities and has 51 fixes is ...

Summary

The SUSE Linux Enterprise 11 Service Pack 3 kernel was updated to receive various security and bugfixes. Following security bugs were fixed: - CVE-2015-8104: Prevent guest to host DoS caused by infinite loop in microcode via #DB exception (bsc#954404). - CVE-2015-5307: Prevent guest to host DoS caused by infinite loop in microcode via #AC exception (bsc#953527). - CVE-2015-7990: RDS: Verify the underlying transport exists before creating a connection, preventing possible DoS (bsc#952384). - CVE-2015-5157: arch/x86/entry/entry_64.S in the Linux kernel on the x86_64 platform mishandled IRET faults in processing NMIs that occurred during userspace execution, which might have allowed local users to gain privileges by triggering an NMI (bsc#938706).

References

#777565 #814440 #900610 #904348 #904965 #920016

#923002 #926007 #926709 #926774 #930145 #930788

#932350 #932805 #933721 #935053 #935757 #936118

#938706 #939826 #939926 #939955 #940017 #940925

#941202 #942204 #942305 #942367 #942605 #942688

#942938 #943786 #944296 #944831 #944837 #944989

#944993 #945691 #945825 #945827 #946078 #946309

#947957 #948330 #948347 #948521 #949100 #949298

#949502 #949706 #949744 #949981 #951440 #952084

#952384 #952579 #953527 #953980 #954404

Cross- CVE-2015-0272 CVE-2015-5157 CVE-2015-5307

CVE-2015-6252 CVE-2015-6937 CVE-2015-7872

CVE-2015-7990 CVE-2015-8104

Affected Products:

SUSE Linux Enterprise Software Development Kit 11-SP3

SUSE Linux Enterprise Server for VMWare 11-SP3

S...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2015:2108-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here