Alerts This Week
Warning Icon 1 566
Alerts This Week
Warning Icon 1 566

SUSE: 2018:1048-1 Important: Kernel Update Fixes 5 Issues

suse
Calendar Grey April 23, 2018
Dist Suse Esm H88
SUSE released a security patch for the Linux kernel, addressing six vulnerabilities, boosting protection and reliability.
An update that solves 5 vulnerabilities and has 62 fixes is now available.

Summary

The SUSE Linux Enterprise 12 SP3 kernel was updated to 4.4.126 to receive various security and bugfixes. The following security bugs were fixed: - CVE-2018-1091: In the flush_tmregs_to_thread function in arch/powerpc/kernel/ptrace.c, a guest kernel crash can be triggered from unprivileged userspace during a core dump on a POWER host due to a missing processor feature check and an erroneous use of transactional memory (TM) instructions in the core dump path, leading to a denial of service (bnc#1087231). - CVE-2018-7740: The resv_map_release function in mm/hugetlb.c allowed local users to cause a denial of service (BUG) via a crafted application that made mmap system calls and has a large pgoff argument to the remap_file_pages system call (bnc#1084353). - CVE-2018-8043: The unimac_mdio_probe function in

References

#1012382 #1019695 #1019699 #1022604 #1031717

#1046610 #1060799 #1064206 #1068032 #1073059

#1073069 #1075428 #1076033 #1077560 #1083574

#1083745 #1083836 #1084223 #1084310 #1084328

#1084353 #1084452 #1084610 #1084699 #1084829

#1084889 #1084898 #1084914 #1084918 #1084967

#1085042 #1085058 #1085224 #1085383 #1085402

#1085404 #1085487 #1085507 #1085511 #1085679

#1085981 #1086015 #1086162 #1086194 #1086357

#1086499 #1086518 #1086607 #1087088 #1087211

#1087231 #1087260 #1087274 #1087659 #1087845

#1087906 #1087999 #1088050 #1088087 #1088241

#1088267 #1088313 #1088324 #1088600 #1088684

#1088871 #802154

Cross- CVE-2017-18257 CVE-2018-1091 CVE-2018-7740

CVE-2018-8043 CVE-2018-8822

Affected Products:

...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2018:1048-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here