Alerts This Week
Warning Icon 1 666
Alerts This Week
Warning Icon 1 666

SUSE: 2016:0341-1 Important: Kernel Root Access Risk Patch

suse
Calendar Grey February 4, 2016
Dist Suse Esm H88
Urgent DEBIAN Security Patch for Kernel live update 12 resolves privileged access issue due to reference leak flaw.
An update that fixes one vulnerability is now available

Summary

This kernel live patch for Linux Kernel 3.12.51-52.34.1 fixes one security issue: - A reference leak in keyring handling with join_session_keyring() could lead to local attackers gain root privileges. (bsc#962075, CVE-2016-0728). Patch Instructions: To install this SUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Live Patching 12: zypper in -t patch SUSE-SLE-Live-Patching-12-2016-202=1 To bring your system up-to-date, use "zypper patch". Package List: - SUSE Linux Enterprise Live Patching 12 (x86_64): kgraft-patch-3_12_51-52_34-default-2-2.1 kgraft-patch-3_12_51-52_34-xen-2-2.1

References

#962078

Cross- CVE-2016-0728

Affected Products:

SUSE Linux Enterprise Live Patching 12

https://www.suse.com/security/cve/CVE-2016-0728.html

https://bugzilla.suse.com/show_bug.cgi?id=962078

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2016:0341-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here