Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
The SUSE Linux Enterprise 11 SP3 kernel was updated to receive various security and bugfixes. The following security bugs were fixed: - CVE-2013-7446: Use-after-free vulnerability in net/unix/af_unix.c in the Linux kernel allowed local users to bypass intended AF_UNIX socket permissions or cause a denial of service (panic) via crafted epoll_ctl calls (bnc#955654). - CVE-2015-7509: fs/ext4/namei.c in the Linux kernel allowed physically proximate attackers to cause a denial of service (system crash) via a crafted no-journal filesystem, a related issue to CVE-2013-2015 (bnc#956707). - CVE-2015-7515: An out of bounds memory access in the aiptek USB driver could be used by physical local attackers to crash the kernel (bnc#956708). - CVE-2015-7550: The keyctl_read_key function in security/keys/keyctl.c in
#758040 #781018 #879378 #879381 #904035 #924919
#934787 #935123 #937444 #939955 #940017 #940413
#940913 #940946 #941514 #942082 #946122 #947128
#948330 #949298 #949752 #949936 #950750 #950998
#951392 #952976 #954628 #955308 #955354 #955654
#955673 #956375 #956514 #956707 #956708 #956709
#956852 #956949 #957988 #957990 #958463 #958886
#958906 #958912 #958951 #959190 #959312 #959399
#959705 #960857 #961500 #961509 #961512 #961516
#961518 #963276 #963765 #963767 #963998 #964201
#965319 #965923 #966437 #966693 #967863 #967972
#967973 #967974 #967975 #968010 #968011 #968012
#968013 #968141 #968670 #969307 #970504 #970892
#970909 #970911 #970948 #970956 #970958 #970970
#971124 #971125 #971360 #973570 #974...
Read the Full Advisory
Get the latest Linux and open source security news straight to your inbox.