The SUSE Linux Enterprise 11 SP4 kernel was updated to receive various security and bugfixes. The following security bugs were fixed: - CVE-2016-10741: fs/xfs/xfs_aops.c allowed local users to cause a denial of service (system crash) because there is a race condition between direct and memory-mapped I/O (associated with a hole) that is handled with BUG_ON instead of an I/O failure (bnc#1114920 bnc#1124010). - CVE-2017-18360: In change_port_settings in drivers/usb/serial/io_ti.c local users could cause a denial of service by division-by-zero in the serial device layer by trying to set very high baud rates (bnc#1123706). - CVE-2018-9568: In sk_clone_lock of sock.c, there is a possible memory corruption due to type confusion. This could lead to local escalation of
#1012382 #1031572 #1068032 #1086695 #1087081
#1094244 #1098658 #1104098 #1104367 #1104684
#1104818 #1105536 #1106105 #1106886 #1107371
#1109330 #1109806 #1110006 #1112963 #1113667
#1114440 #1114672 #1114920 #1115007 #1115038
#1115827 #1115828 #1115829 #1115830 #1115831
#1115832 #1115833 #1115834 #1115835 #1115836
#1115837 #1115838 #1115839 #1115840 #1115841
#1115842 #1115843 #1115844 #1116841 #1117796
#1117802 #1117805 #1117806 #1117943 #1118152
#1118319 #1118760 #1119255 #1119714 #1120056
#1120077 #1120086 #1120093 #1120094 #1120105
#1120107 #1120109 #1120217 #1120223 #1120226
#1120336 #1120347 #1120743 #1120950 #1121872
#1121997 #1122874 #1123505 #1123702 #1123706
#1124010 #112...
Read the Full Advisory
Get the latest Linux and open source security news straight to your inbox.