Alerts This Week
Warning Icon 1 560
Alerts This Week
Warning Icon 1 560

SUSE Linux 11-SP4: SUSE-SU-2016:3069-1 Critical: Kernel Security Update

suse
Calendar Grey December 9, 2016
Dist Suse Esm H88
Debian Linux kernel patch fixes 9 vulnerabilities, improves performance, and tackles major concerns with essential updates.
An update that solves 11 vulnerabilities and has 49 fixes An update that solves 11 vulnerabilities and has 49 fixes An update that solves 11 vulnerabilities and has 49 fixes is now...

Summary

The SUSE Linux Enterprise 11 SP4 RT kernel was updated to receive various security and bugfixes. This feature was added: - Support for the 2017 Intel Purley platform. The following security bugs were fixed: - CVE-2016-5195: A local privilege escalation using MAP_PRIVATE was fixed, which is reportedly exploited in the wild (bsc#1004418). - CVE-2016-0823: The pagemap_open function in fs/proc/task_mmu.c in the Linux kernel allowed local users to obtain sensitive physical-address information by reading a pagemap file, aka Android internal bug 25739721 (bnc#994759). - CVE-2016-3841: The IPv6 stack in the Linux kernel mishandled options data, which allowed local users to gain privileges or cause a denial of service (use-after-free and system crash) via a crafted sendmsg system call (bnc#992566).

References

#1000189 #1001419 #1002165 #1004418 #732582

#839104 #843236 #909994 #911687 #915183 #920016

#934760 #951392 #956514 #960689 #963655 #971975

#971989 #974620 #976867 #977687 #979514 #979595

#979681 #980371 #982218 #982783 #983535 #983619

#984102 #984194 #984992 #985206 #986362 #986365

#986445 #987565 #988440 #989152 #989261 #989779

#991608 #991665 #991923 #992566 #993127 #993890

#993891 #994296 #994436 #994618 #994759 #994926

#996329 #996664 #997708 #998399 #999584 #999600

#999932

Cross- CVE-2013-4312 CVE-2015-7513 CVE-2016-0823

CVE-2016-3841 CVE-2016-4997 CVE-2016-4998

CVE-2016-5195 CVE-2016-5696 CVE-2016-6480

CVE-2016-6828 CVE-2016-7425

Affected Products:

SUSE Linux Enterprise Real Time Extension 11-SP4

...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2016:3069-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here