The SUSE Linux Enterprise 11 SP4 kernel was updated to receive various security and bugfixes. The following security bugs were fixed: - CVE-2017-16649: The usbnet_generic_cdc_bind function in drivers/net/usb/cdc_ether.c in the Linux kernel allowed local users to cause a denial of service (divide-by-zero error and system crash) or possibly have unspecified other impact via a crafted USB device (bnc#1067085). - CVE-2017-16535: The usb_get_bos_descriptor function in drivers/usb/core/config.c in the Linux kernel allowed local users to cause a denial of service (out-of-bounds read and system crash) or possibly have unspecified other impact via a crafted USB device (bnc#1066700). - CVE-2017-15102: The tower_probe function in
#1012917 #1013018 #1022967 #1024450 #1031358
#1036286 #1036629 #1037441 #1037667 #1037669
#1037994 #1039803 #1040609 #1042863 #1045154
#1045205 #1045327 #1045538 #1047523 #1050381
#1050431 #1051133 #1051932 #1052311 #1052365
#1052370 #1052593 #1053148 #1053152 #1053317
#1053802 #1053933 #1054070 #1054076 #1054093
#1054247 #1054305 #1054706 #1056230 #1056504
#1056588 #1057179 #1057796 #1058524 #1059051
#1060245 #1060665 #1061017 #1061180 #1062520
#1062842 #1063301 #1063544 #1063667 #1064803
#1064861 #1065180 #1066471 #1066472 #1066573
#1066606 #1066618 #1066625 #1066650 #1066671
#1066700 #1066705 #1067085 #1067816 #1067888
#909484 #984530 #996376
Cross- CVE-2017-1000112 CVE-2017-10661 CVE-2017-12762
...
Read the Full Advisory
Get the latest Linux and open source security news straight to your inbox.