Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
The SUSE Linux Enterprise 12 SP4 kernel was updated to receive various security and bugfixes. The following security bugs were fixed: - Unprivileged BPF has been disabled by default to reduce attack surface as too many security issues have happened in the past (jsc#SLE-22573) You can reenable via systemctl setting /proc/sys/kernel/unprivileged_bpf_disabled to 0. (kernel.unprivileged_bpf_disabled = 0) The following security bugs were fixed: - CVE-2021-0941: In bpf_skb_change_head of filter.c, there is a possible out of bounds read due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation (bnc#1192045). - CVE-2021-31916: An out-of-bounds (OOB) memory write flaw was found in
#1087082 #1100416 #1108488 #1129735 #1129898
#1133374 #1153720 #1171420 #1176724 #1176931
#1180624 #1181854 #1181855 #1183050 #1183861
#1184673 #1184804 #1185377 #1185677 #1185726
#1185727 #1185758 #1185973 #1186063 #1186482
#1186483 #1186672 #1188026 #1188172 #1188563
#1188601 #1188613 #1188838 #1188842 #1188876
#1188983 #1188985 #1189057 #1189262 #1189278
#1189291 #1189399 #1189400 #1189418 #1189420
#1189706 #1189846 #1189884 #1190023 #1190025
#1190067 #1190115 #1190117 #1190118 #1190159
#1190276 #1190349 #1190350 #1190351 #1190432
#1190479 #1190534 #1190601 #1190717 #1191193
#1191315 #1191317 #1191318 #1191529 #1191530
#1191628 #1191660 #1191790 #1191801 #1191813
#1191961 #119...
Read the Full Advisory
Get the latest Linux and open source security news straight to your inbox.