The SUSE Linux Enterprise 12 SP5 kernel was updated. The following security bugs were fixed: - CVE-2019-15126: Fixed a vulnerability in Broadcom and Cypress Wi-Fi chips, used in RPi family of devices aka "Kr00k". (bsc#1167162) - CVE-2021-33098: Fixed a potential denial of service in Intel(R) Ethernet ixgbe driver due to improper input validation. (bsc#1192877) - CVE-2021-0935: Fixed out of bounds write due to a use after free which could lead to local escalation of privilege with System execution privileges needed in ip6_xmit. (bsc#1192032) - CVE-2018-25020: Fixed an issue in the BPF subsystem in the Linux kernel mishandled situations with a long jump over an instruction sequence where inner instructions require substantial expansions into multiple BPF instructions, leading to an overflow. (bsc#1193575)
#1114648 #1124431 #1167162 #1169514 #1172073
#1179599 #1183678 #1183897 #1184804 #1185727
#1185762 #1187167 #1189126 #1189158 #1189305
#1189841 #1190317 #1190358 #1190428 #1191229
#1191384 #1191731 #1191876 #1192032 #1192145
#1192267 #1192740 #1192845 #1192847 #1192866
#1192877 #1192946 #1192974 #1193231 #1193306
#1193318 #1193440 #1193442 #1193575 #1193731
#1194087 #1194094
Cross- CVE-2018-25020 CVE-2019-15126 CVE-2020-27820
CVE-2021-0920 CVE-2021-0935 CVE-2021-28711
CVE-2021-28712 CVE-2021-28713 CVE-2021-28714
CVE-2021-28715 CVE-2021-33098 CVE-2021-4002
CVE-2021-43975 CVE-2021-43976 CVE-2021-45485
CVE-2021-45486
CVSS scores:
CVE-2018-25020 (SUSE): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Get the latest Linux and open source security news straight to your inbox.