Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
The SUSE Linux Enterprise 15 SP2 Realtime kernel was updated to receive various security and bugfixes. The following security bugs were fixed: - CVE-2021-3759: Unaccounted ipc objects in Linux kernel could have lead to breaking memcg limits and DoS attacks (bsc#1190115). - CVE-2021-38160: Data corruption or loss could be triggered by an untrusted device that supplies a buf->len value exceeding the buffer size in drivers/char/virtio_console.c (bsc#1190117) - CVE-2021-3640: Fixed a Use-After-Free vulnerability in function sco_sock_sendmsg() in the bluetooth stack (bsc#1188172). - CVE-2021-3753: Fixed race out-of-bounds in virtual terminal handling (bsc#1190025). - CVE-2021-3743: Fixed OOB Read in qrtr_endpoint_post (bsc#1189883).
#1040364 #1127650 #1135481 #1152489 #1160010
#1167032 #1168202 #1174969 #1175052 #1175543
#1177399 #1180141 #1180347 #1181148 #1181972
#1184114 #1184180 #1185675 #1185902 #1186264
#1186731 #1187211 #1187455 #1187468 #1187619
#1188067 #1188172 #1188418 #1188439 #1188616
#1188780 #1188781 #1188782 #1188783 #1188784
#1188786 #1188787 #1188788 #1188790 #1188878
#1188885 #1188924 #1188982 #1188983 #1188985
#1189021 #1189057 #1189077 #1189153 #1189197
#1189209 #1189210 #1189212 #1189213 #1189214
#1189215 #1189216 #1189217 #1189218 #1189219
#1189220 #1189221 #1189222 #1189229 #1189262
#1189291 #1189292 #1189298 #1189301 #1189305
#1189323 #1189384 #1189385 #1189392 #1189399
#1189400 #118...
Read the Full Advisory
Get the latest Linux and open source security news straight to your inbox.