Alerts This Week
Warning Icon 1 677
Alerts This Week
Warning Icon 1 677

SUSE Linux Enterprise 11-SP4: 2018:1080-1 Important: Kernel DoS Issues

suse
Calendar Grey April 25, 2018
Dist Suse Esm H88
Important SUSE Security Patch: Kernel addresses 18 vulnerabilities and introduces 29 improvements now released.
An update that solves 18 vulnerabilities and has 29 fixes is now available.

Summary

The SUSE Linux Enterprise 11 SP4 kernel was updated to receive various security and bugfixes. The following security bugs were fixed: - CVE-2017-5715: Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis (bnc#1068032). Enhancements and bugfixes over the previous fixes have been added to this kernel. - CVE-2018-10087: The kernel_wait4 function in kernel/exit.c might have allowed local users to cause a denial of service by triggering an attempted use of the -INT_MIN value (bnc#1089608). - CVE-2018-7757: Memory leak in the sas_smp_get_phy_events function in drivers/scsi/libsas/sas_expander.c allowed local users to cause a denial

References

#1010470 #1013018 #1039348 #1052943 #1062568

#1062840 #1063416 #1063516 #1065600 #1065999

#1067118 #1067912 #1068032 #1072689 #1072865

#1075088 #1075091 #1075994 #1078669 #1078672

#1078673 #1078674 #1080464 #1080757 #1080813

#1081358 #1082091 #1082424 #1083242 #1083275

#1083483 #1083494 #1084536 #1085113 #1085279

#1085331 #1085513 #1086162 #1087092 #1087260

#1087762 #1088147 #1088260 #1089608 #909077

#940776 #943786

Cross- CVE-2015-5156 CVE-2016-7915 CVE-2017-0861

CVE-2017-12190 CVE-2017-13166 CVE-2017-16644

CVE-2017-16911 CVE-2017-16912 CVE-2017-16913

CVE-2017-16914 CVE-2017-18203 CVE-2017-18208

CVE-2017-5715 CVE-2018-10087 CVE-2018-6927

CVE-2018-7566 CVE-2018-7757 CVE-2018-8822

Affe...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2018:1080-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here