Alerts This Week
Warning Icon 1 684
Alerts This Week
Warning Icon 1 684

SUSE: 2019:14218-1 Important: Linux Kernel Critical Security Fixes

suse
Calendar Grey November 13, 2019
Dist Suse Esm H88
SUSE boosts Linux Kernel by implementing essential updates and strengthening security measures; a system restart is required after installation.
An update that solves 29 vulnerabilities and has 7 fixes is now available

Summary

The SUSE Linux Enterprise 11-SP4 kernel was updated to receive various security and bugfixes. The following security bugs were fixed: - CVE-2019-11135: Aborting an asynchronous TSX operation on Intel CPUs with Transactional Memory support could be used to facilitate sidechannel information leaks out of microarchitectural buffers, similar to the previously described "Microarchitectural Data Sampling" attack. The Linux kernel was supplemented with the option to disable TSX operation altogether (requiring CPU Microcode updates on older systems) and better flushing of microarchitectural buffers (VERW). The set of options available is described in our TID at https://support.scc.suse.com/s/kb?language=en_US - CVE-2018-12207: Untrusted virtual machines on Intel CPUs could exploit a

References

#1101061 #1113201 #1117665 #1131107 #1143327

#1144903 #1145477 #1145922 #1146163 #1146285

#1146361 #1146391 #1146524 #1146540 #1146547

#1146678 #1147122 #1148938 #1149376 #1149522

#1150025 #1150112 #1150452 #1150457 #1150465

#1150599 #1151347 #1151350 #1152779 #1152782

#1152786 #1152789 #1153158 #1155671 #802154

#936875

Cross- CVE-2017-18509 CVE-2017-18551 CVE-2018-12207

CVE-2018-20976 CVE-2019-10220 CVE-2019-11135

CVE-2019-14821 CVE-2019-14835 CVE-2019-15118

CVE-2019-15212 CVE-2019-15216 CVE-2019-15217

CVE-2019-15219 CVE-2019-15291 CVE-2019-15292

CVE-2019-15505 CVE-2019-15807 CVE-2019-15902

CVE-2019-15927 CVE-2019-16232 CVE-2019-16233

CVE-2019-16234 CVE-2019-16413 CVE-2019-17052

CVE-2...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2019:14218-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here