The SUSE Linux Enterprise 12 SP3 kernel was updated to 4.4.126 to receive various security and bugfixes. The following security bugs were fixed: - CVE-2018-1091: In the flush_tmregs_to_thread function in arch/powerpc/kernel/ptrace.c, a guest kernel crash can be triggered from unprivileged userspace during a core dump on a POWER host due to a missing processor feature check and an erroneous use of transactional memory (TM) instructions in the core dump path, leading to a denial of service (bnc#1087231). - CVE-2018-7740: The resv_map_release function in mm/hugetlb.c allowed local users to cause a denial of service (BUG) via a crafted application that made mmap system calls and has a large pgoff argument to the remap_file_pages system call (bnc#1084353). - CVE-2018-8043: The unimac_mdio_probe function in
#1012382 #1019695 #1019699 #1022604 #1031717
#1046610 #1060799 #1064206 #1068032 #1073059
#1073069 #1075428 #1076033 #1077560 #1083574
#1083745 #1083836 #1084223 #1084310 #1084328
#1084353 #1084452 #1084610 #1084699 #1084829
#1084889 #1084898 #1084914 #1084918 #1084967
#1085042 #1085058 #1085224 #1085383 #1085402
#1085404 #1085487 #1085507 #1085511 #1085679
#1085981 #1086015 #1086162 #1086194 #1086357
#1086499 #1086518 #1086607 #1087088 #1087211
#1087231 #1087260 #1087274 #1087659 #1087845
#1087906 #1087999 #1088050 #1088087 #1088241
#1088267 #1088313 #1088324 #1088600 #1088684
#1088871 #802154
Cross- CVE-2017-18257 CVE-2018-1091 CVE-2018-7740
CVE-2018-8043 CVE-2018-8822
Affected Products:
...
Read the Full Advisory
Get the latest Linux and open source security news straight to your inbox.