Alerts This Week
Warning Icon 1 666
Alerts This Week
Warning Icon 1 666

SUSE: 2019:1289-1 Important: Kernel Update For Denial Of Service

suse
Calendar Grey May 17, 2019
Dist Suse Esm H88
A critical security notification regarding SUSE's kernel enhancement that resolves various vulnerabilities and offers essential patches.
An update that solves 33 vulnerabilities and has 13 fixes is now available

Summary

The SUSE Linux Enterprise 12 SP1 LTSS kernel was updated to receive various security and bugfixes. Four new speculative execution information leak issues have been identified in Intel CPUs. (bsc#1111331) - CVE-2018-12126: Microarchitectural Store Buffer Data Sampling (MSBDS) - CVE-2018-12127: Microarchitectural Fill Buffer Data Sampling (MFBDS) - CVE-2018-12130: Microarchitectural Load Port Data Samling (MLPDS) - CVE-2019-11091: Microarchitectural Data Sampling Uncacheable Memory (MDSUM) This kernel update contains software mitigations for these issues, which also utilize CPU microcode updates shipped in parallel. For more information on this set of information leaks, check out https://support.scc.suse.com/s/kb?language=en_US The following security bugs were fixed:

References

#1031240 #1034862 #1066674 #1071021 #1086535

#1091171 #1094825 #1100001 #1102517 #1103097

#1104475 #1105025 #1105296 #1106913 #1107829

#1108498 #1110768 #1111331 #1111516 #1113751

#1113769 #1114648 #1114920 #1115007 #1115038

#1116345 #1116841 #1118152 #1118319 #1119714

#1119946 #1120743 #1120758 #1121621 #1122015

#1123161 #1124010 #1124728 #1124732 #1124735

#1126890 #1128166 #1131416 #1131427 #1132828

#1133188

Cross- CVE-2016-10741 CVE-2017-1000407 CVE-2017-16533

CVE-2017-7273 CVE-2017-7472 CVE-2018-12126

CVE-2018-12127 CVE-2018-12130 CVE-2018-14633

CVE-2018-15572 CVE-2018-16884 CVE-2018-18281

CVE-2018-18386 CVE-2018-18690 CVE-2018-18710

CVE-2018-19407 CVE-2018-19824 CVE-2018-19985

C...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2019:1289-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here