Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
The SUSE Linux Enterprise 15 SP3 kernel was updated to receive various security and bugfixes. The following security bugs were fixed: - CVE-2021-33200: Enforcing incorrect limits for pointer arithmetic operations by the BPF verifier could be abused to perform out-of-bounds reads and writes in kernel memory (bsc#1186484). - CVE-2021-33034: Fixed a use-after-free when destroying an hci_chan. This could lead to writing an arbitrary values. (bsc#1186111) - CVE-2020-26139: Fixed a denial-of-service when an Access Point (AP) forwards EAPOL frames to other clients even though the sender has not yet successfully authenticated to the AP. (bnc#1186062) - CVE-2021-23134: A Use After Free vulnerability in nfc sockets allowed local attackers to elevate their privileges. (bnc#1186060)
#1055117 #1065729 #1087082 #1113295 #1133021
#1152457 #1152472 #1152489 #1153274 #1154353
#1155518 #1156395 #1160634 #1164648 #1167260
#1167574 #1167773 #1168777 #1168838 #1169709
#1171295 #1173485 #1174416 #1174426 #1175995
#1176447 #1176774 #1177028 #1177326 #1177666
#1178089 #1178134 #1178163 #1178330 #1178378
#1178418 #1179243 #1179519 #1179825 #1179827
#1179851 #1180197 #1180814 #1180846 #1181104
#1181383 #1181507 #1181674 #1181862 #1182077
#1182257 #1182377 #1182552 #1182574 #1182613
#1182712 #1182715 #1182717 #1182999 #1183022
#1183069 #1183252 #1183277 #1183278 #1183279
#1183280 #1183281 #1183282 #1183283 #1183284
#1183285 #1183286 #1183287 #1183288 #1183289
#1183310 #118...
Read the Full Advisory
Get the latest Linux and open source security news straight to your inbox.