The SUSE Linux Enterprise 15 SP1 LTSS kernel was updated to receive various security and bugfixes. The following security bugs were fixed: - Unprivileged BPF has been disabled by default to reduce attack surface as too many security issues have happened in the past (jsc#SLE-22573) You can reenable via systemctl setting /proc/sys/kernel/unprivileged_bpf_disabled to 0. (kernel.unprivileged_bpf_disabled = 0) - CVE-2021-0941: In bpf_skb_change_head of filter.c, there is a possible out of bounds read due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation (bnc#1192045). - CVE-2021-31916: An out-of-bounds (OOB) memory write flaw was found in
#1100416 #1108488 #1129735 #1129898 #1133374
#1136513 #1171420 #1176724 #1177666 #1181158
#1184673 #1184804 #1185377 #1185726 #1185758
#1185973 #1186078 #1186109 #1186390 #1186482
#1186672 #1188062 #1188063 #1188172 #1188563
#1188601 #1188616 #1188838 #1188876 #1188983
#1188985 #1189057 #1189262 #1189291 #1189399
#1189400 #1189706 #1189846 #1189884 #1190023
#1190025 #1190067 #1190115 #1190117 #1190159
#1190276 #1190349 #1190351 #1190479 #1190534
#1190601 #1190717 #1191193 #1191315 #1191317
#1191349 #1191457 #1191628 #1191790 #1191800
#1191888 #1191961 #1192045 #1192267 #1192379
#1192400 #1192775 #1192781 #1192802 SLE-22573
Cross- CVE-2018-13405 CVE-2018-9517 CVE-2019-3874
CVE-20...
Read the Full Advisory
Get the latest Linux and open source security news straight to your inbox.