Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
The SUSE Linux Enterprise 15 SP3 Azure kernel was updated to receive various security and bugfixes. The following security bugs were fixed: - CVE-2021-3640: Fixed a Use-After-Free vulnerability in function sco_sock_sendmsg() in the bluetooth stack (bsc#1188172). - CVE-2021-3653: Missing validation of the `int_ctl` VMCB field and allows a malicious L1 guest to enable AVIC support for the L2 guest. (bsc#1189399). - CVE-2021-3656: Missing validation of the the `virt_ext` VMCB field and allows a malicious L1 guest to disable both VMLOAD/VMSAVE intercepts and VLS for the L2 guest (bsc#1189400). - CVE-2021-3679: A lack of CPU resource in tracing module functionality was found in the way user uses trace ring buffer in a specific way. Only privileged local users (with CAP_SYS_ADMIN capability) could use this
#1040364 #1127650 #1135481 #1152489 #1160010
#1168202 #1171420 #1174969 #1175052 #1175543
#1177399 #1180100 #1180141 #1180347 #1181006
#1181148 #1181972 #1184180 #1185902 #1186264
#1186731 #1187211 #1187455 #1187468 #1187483
#1187619 #1187959 #1188067 #1188172 #1188231
#1188270 #1188412 #1188418 #1188616 #1188700
#1188780 #1188781 #1188782 #1188783 #1188784
#1188786 #1188787 #1188788 #1188790 #1188878
#1188885 #1188924 #1188982 #1188983 #1188985
#1189021 #1189057 #1189077 #1189153 #1189197
#1189209 #1189210 #1189212 #1189213 #1189214
#1189215 #1189216 #1189217 #1189218 #1189219
#1189220 #1189221 #1189222 #1189225 #1189229
#1189233 #1189262 #1189291 #1189292 #1189296
#1189298 #118...
Read the Full Advisory
Get the latest Linux and open source security news straight to your inbox.