Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
The SUSE Linux Enterprise 11 SP4 kernel was updated to receive various security and bugfixes. For the PowerPC64 a new "bigmem" flavor has been added to support big Power machines. (FATE#319026) The following security bugs were fixed: - CVE-2016-7042: The proc_keys_show function in security/keys/proc.c in the Linux kernel, when the GNU Compiler Collection (gcc) stack protector is enabled, uses an incorrect buffer size for certain timeout data, which allowed local users to cause a denial of service (stack memory corruption and panic) by reading the /proc/keys file (bnc#1004517). - CVE-2016-7097: The filesystem implementation in the Linux kernel preserves the setgid bit during a setxattr call, which allowed local users to gain group privileges by leveraging the existence of a setgid
#1000189 #1001419 #1002165 #1003077 #1003344
#1003568 #1003677 #1003866 #1003925 #1004517
#1004520 #1005857 #1005896 #1005903 #1006917
#1006919 #1007944 #763198 #771065 #799133
#803320 #839104 #843236 #860441 #863873 #865783
#871728 #907611 #908458 #908684 #909077 #909350
#909484 #909618 #909994 #911687 #915183 #920016
#922634 #922947 #928138 #929141 #934760 #951392
#956514 #960689 #963655 #967716 #968010 #968014
#971975 #971989 #973203 #974620 #976867 #977687
#979514 #979595 #979681 #980371 #982218 #982783
#983535 #983619 #984102 #984194 #984992 #985206
#986337 #986362 #986365 #986445 #987565 #988440
#989152 #989261 #989764 #989779 #991608 #991665
#991923 #992566 #993127 #993890 #993891 #994296
...
Read the Full Advisory
Get the latest Linux and open source security news straight to your inbox.