Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 481
Alerts This Week
Warning Icon 1 481

SUSE 11 SP4: 2020:1407-8 Critical Kernel Patch Remediating Various Issues

suse
Calendar Grey May 3, 2016
Scroller Suse
The latest kernel patch from SUSE addresses a variety of vulnerabilities and errors, significantly improving system stability and protection.
An update that solves 41 vulnerabilities and has 49 fixes An update that solves 41 vulnerabilities and has 49 fixes An update that solves 41 vulnerabilities and has 49 fixes is now...

Summary

The SUSE Linux Enterprise 11 SP3 kernel was updated to receive various security and bugfixes. The following security bugs were fixed: - CVE-2013-7446: Use-after-free vulnerability in net/unix/af_unix.c in the Linux kernel allowed local users to bypass intended AF_UNIX socket permissions or cause a denial of service (panic) via crafted epoll_ctl calls (bnc#955654). - CVE-2015-7509: fs/ext4/namei.c in the Linux kernel allowed physically proximate attackers to cause a denial of service (system crash) via a crafted no-journal filesystem, a related issue to CVE-2013-2015 (bnc#956707). - CVE-2015-7515: An out of bounds memory access in the aiptek USB driver could be used by physical local attackers to crash the kernel (bnc#956708). - CVE-2015-7550: The keyctl_read_key function in security/keys/keyctl.c in

References

#758040 #781018 #879378 #879381 #904035 #924919

#934787 #935123 #937444 #939955 #940017 #940413

#940913 #940946 #941514 #942082 #946122 #947128

#948330 #949298 #949752 #949936 #950750 #950998

#951392 #952976 #954628 #955308 #955354 #955654

#955673 #956375 #956514 #956707 #956708 #956709

#956852 #956949 #957988 #957990 #958463 #958886

#958906 #958912 #958951 #959190 #959312 #959399

#959705 #960857 #961500 #961509 #961512 #961516

#961518 #963276 #963765 #963767 #963998 #964201

#965319 #965923 #966437 #966693 #967863 #967972

#967973 #967974 #967975 #968010 #968011 #968012

#968013 #968141 #968670 #969307 #970504 #970892

#970909 #970911 #970948 #970956 #970958 #970970

#971124 #971125 #971360 #973570 #974...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2016:1203-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.