The SUSE Linux Enterprise 12 SP1 kernel was updated to 3.12.53 to receive various security and bugfixes. The following security bugs were fixed: - CVE-2013-7446: Use-after-free vulnerability in net/unix/af_unix.c in the Linux kernel allowed local users to bypass intended AF_UNIX socket permissions or cause a denial of service (panic) via crafted epoll_ctl calls (bnc#955654). - CVE-2015-5707: Integer overflow in the sg_start_req function in drivers/scsi/sg.c in the Linux kernel allowed local users to cause a denial of service or possibly have unspecified other impact via a large iov_count value in a write request (bnc#940338). - CVE-2015-7550: The keyctl_read_key function in security/keys/keyctl.c in the Linux kernel did not properly use a semaphore, which allowed local
#812259 #855062 #867583 #899908 #902606 #924919
#935087 #937261 #937444 #938577 #940338 #940946
#941363 #942476 #943989 #944749 #945649 #947953
#949440 #949936 #950292 #951199 #951392 #951615
#952579 #952976 #954992 #955118 #955354 #955654
#956514 #956708 #957525 #957988 #957990 #958463
#958886 #958951 #959090 #959146 #959190 #959257
#959364 #959399 #959436 #959463 #959629 #960221
#960227 #960281 #960300 #961202 #961257 #961500
#961509 #961516 #961588 #961971 #962336 #962356
#962788 #962965 #963449 #963572 #963765 #963767
#963825 #964230 #964821 #965344 #965840
Cross- CVE-2013-7446 CVE-2015-0272 CVE-2015-5707
CVE-2015-7550 CVE-2015-7799 CVE-2015-8215
CVE-2015-8539 CVE-2015-8543 CVE-2015-8550
CVE-2015...
Read the Full Advisory
Get the latest Linux and open source security news straight to your inbox.