Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 507
Alerts This Week
Warning Icon 1 507

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 7 articles for you...
100

SUSE: 2023:4141-1 Critical Patch for Grub2 Out-Of-Bounds Vulnerability

* bsc#1201300 * bsc#1215935 * bsc#1215936 Cross-References: . # Security update for grub2 Announcement ID: SUSE-SU-2023:4141-1 Rating: important References: * bsc#1201300 * bsc#1215935 * bsc#1215936 Cross-References: * CVE-2023-4692 * CVE-2023-4693 CVSS scores: * CVE-2023-4692 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-4693 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N Affected Products: * Basesystem Module 15-SP5 * Server Applications Module 15-SP5 * SUSE Linux Enterprise Desktop 15 SP5 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise Micro 5.5 * SUSE Linux Enterprise Real Time 15 SP5 * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 An update that solves two vulnerabilities and has one security fix can now be installed. ## Description: This update for grub2 fixes the following issues: Security fixes: \- CVE-2023-4692: Fixed an out-of-bounds write at fs/ntfs.c which may lead to unsigned code execution. (bsc#1215935) \- CVE-2023-4693: Fixed an out-of-bounds read at fs/ntfs.c which may lead to leak sensitive information. (bsc#1215936) Other fixes: \- Fix a boot delay issue in PowerPC PXE boot (bsc#1201300) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Micro 5.5 zypper in -t patch SUSE-SLE-Micro-5.5-2023-4141=1 * Basesystem Module 15-SP5 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP5-2023-4141=1 * Server Applications Module 15-SP5 zypper in -t patch SUSE-SLE-Module-Server-Applications-15-SP5-2023-4141=1 ## Package List: * SUSE Linux Enterprise Micro 5.5 (aarch64 s390x x86_64) * grub2-2.06-150500.29.8.1 * grub2-debugsource-2.06-150500.29.8.1 * grub2-debuginfo-2.06-150500.29.8.1 * SUSE LinuxEnterprise Micro 5.5 (noarch) * grub2-i386-pc-2.06-150500.29.8.1 * grub2-arm64-efi-2.06-150500.29.8.1 * grub2-snapper-plugin-2.06-150500.29.8.1 * grub2-x86_64-efi-2.06-150500.29.8.1 * grub2-x86_64-xen-2.06-150500.29.8.1 * SUSE Linux Enterprise Micro 5.5 (s390x) * grub2-s390x-emu-2.06-150500.29.8.1 * Basesystem Module 15-SP5 (aarch64 ppc64le s390x x86_64) * grub2-2.06-150500.29.8.1 * grub2-debuginfo-2.06-150500.29.8.1 * Basesystem Module 15-SP5 (noarch) * grub2-i386-pc-2.06-150500.29.8.1 * grub2-arm64-efi-2.06-150500.29.8.1 * grub2-snapper-plugin-2.06-150500.29.8.1 * grub2-powerpc-ieee1275-2.06-150500.29.8.1 * grub2-x86_64-efi-2.06-150500.29.8.1 * grub2-systemd-sleep-plugin-2.06-150500.29.8.1 * Basesystem Module 15-SP5 (aarch64 s390x x86_64) * grub2-debugsource-2.06-150500.29.8.1 * Basesystem Module 15-SP5 (s390x) * grub2-s390x-emu-2.06-150500.29.8.1 * Server Applications Module 15-SP5 (noarch) * grub2-x86_64-xen-2.06-150500.29.8.1 ## References: * https://www.suse.com/security/cve/CVE-2023-4692.html * https://www.suse.com/security/cve/CVE-2023-4693.html * https://bugzilla.suse.com/show_bug.cgi?id=1201300 * https://bugzilla.suse.com/show_bug.cgi?id=1215935 * https://bugzilla.suse.com/show_bug.cgi?id=1215936 . Essential security patches for grub2 tackling significant vulnerabilities and various improvements for openSUSE infrastructure.. Security Advisory, Grub2 Patches, Out-Of-Bounds Fix. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Oct 20, 2023 Critical SuSE
202

openSUSE Leap 15.3: 2022:0755-1 Critical: Kernel Update Mitigation

An update that solves 6 vulnerabilities, contains three features and has 56 fixes is now available. . openSUSE Security Update: Security update for the Linux Kernel ______________________________________________________________________________ Announcement ID: openSUSE-SU-2022:0755-1 Rating: important References: #1089644 #1154353 #1156395 #1157038 #1157923 #1176447 #1176940 #1178134 #1181147 #1181588 #1183872 #1187716 #1188404 #1189126 #1190812 #1190972 #1191580 #1191655 #1191741 #1192210 #1192483 #1193096 #1193233 #1193243 #1193787 #1194163 #1194967 #1195012 #1195081 #1195142 #1195352 #1195378 #1195476 #1195477 #1195478 #1195479 #1195480 #1195481 #1195482 #1195506 #1195516 #1195543 #1195668 #1195701 #1195798 #1195799 #1195823 #1195908 #1195928 #1195947 #1195957 #1195995 #1196195 #1196235 #1196339 #1196400 #1196403 #1196516 #1196584 #1196601 #1196612 #1196776 SLE-20807 SLE-22135 SLE-22494 Cross-References: CVE-2022-0001 CVE-2022-0002 CVE-2022-0492 CVE-2022-0516 CVE-2022-0847 CVE-2022-25375 CVSS scores: CVE-2022-0001 (SUSE): 5.6 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N CVE-2022-0002 (SUSE): 5.6 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N CVE-2022-0492 (SUSE): 7 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H CVE-2022-0516 (SUSE): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVE-2022-0847 (SUSE): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVE-2022-25375 (NVD) : 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N CVE-2022-25375 (SUSE): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N Affected Products: openSUSE Leap 15.3 ______________________________________________________________________________ An update that solves 6 vulnerabilities, contains three features and has 56 fixes is now available. Description: The SUSE Linux Enterprise 15 SP3 Azure kernel was updated to receive various security and bugfixes. Transient execution side-channel attacks attacking the Branch History Buffer (BHB), named "Branch Target Injection" and "Intra-Mode Branch History Injection" are now mitigated. The following security bugs were fixed: - CVE-2022-0847: Fixed a vulnerability were a local attackers could overwrite data in arbitrary (read-only) files (bsc#1196584). - CVE-2022-0001: Fixed Branch History Injection vulnerability (bsc#1191580). - CVE-2022-0002: Fixed Intra-Mode Branch Target Injection vulnerability (bsc#1191580). - CVE-2022-25375: The RNDIS USB gadget lacks validation of the size of the RNDIS_MSG_SET command. Attackers can obtain sensitive information from kernel memory (bsc#1196235). - CVE-2022-0516: Fixed missing check in ioctl related to KVM in s390 allows kernel memory read/write (bsc#1195516). - CVE-2022-0492: Fixed a privilege escalation related to cgroups v1 release_agent feature, which allowed bypassing namespace isolation unexpectedly (bsc#1195543). The following non-security bugs were fixed: - ACPI/IORT: Check node revision for PMCG resources (git-fixes). - ALSA: hda/realtek: Add missing fixup-model entry for Gigabyte X570 ALC1220 quirks (git-fixes). - ALSA: hda/realtek: Add quirk for ASUS GU603 (git-fixes). - ALSA: hda/realtek: Fix silent output on Gigabyte X570 Aorus Xtreme after reboot from Windows (git-fixes). - ALSA: hda/realtek: Fix silent output on Gigabyte X570S Aorus Master (newer chipset) (git-fixes). - ALSA: hda: Fix missing codec probe on Shenker Dock 15 (git-fixes). - ALSA: hda: Fix regression on forced probe mask option (git-fixes). - ALSA: usb-audio: Correctquirk for VF0770 (git-fixes). - ALSA: usb-audio: initialize variables that could ignore errors (git-fixes). - ASoC: Revert "ASoC: mediatek: Check for error clk pointer" (git-fixes). - ASoC: cpcap: Check for NULL pointer after calling of_get_child_by_name (git-fixes). - ASoC: fsl: Add missing error handling in pcm030_fabric_probe (git-fixes). - ASoC: max9759: fix underflow in speaker_gain_control_put() (git-fixes). - ASoC: ops: Fix stereo change notifications in snd_soc_put_volsw() (git-fixes). - ASoC: ops: Fix stereo change notifications in snd_soc_put_volsw_range() (git-fixes). - ASoC: ops: Reject out of bounds values in snd_soc_put_volsw() (git-fixes). - ASoC: ops: Reject out of bounds values in snd_soc_put_volsw_sx() (git-fixes). - ASoC: ops: Reject out of bounds values in snd_soc_put_xr_sx() (git-fixes). - ASoC: xilinx: xlnx_formatter_pcm: Make buffer bytes multiple of period bytes (git-fixes). - Align s390 NVME target options with other architectures (bsc#1188404, jsc#SLE-22494). - Bluetooth: refactor malicious adv data check (git-fixes). - EDAC/xgene: Fix deferred probing (bsc#1178134). - HID:Add support for UGTABLET WP5540 (git-fixes). - IB/cm: Avoid a loop when device has 255 ports (git-fixes) - IB/cma: Do not send IGMP leaves for sendonly Multicast groups (git-fixes). - IB/hfi1: Fix AIP early init panic (jsc#SLE-13208). - IB/hfi1: Fix error return code in parse_platform_config() (git-fixes) - IB/hfi1: Use kzalloc() for mmu_rb_handler allocation (git-fixes) - IB/isert: Fix a use after free in isert_connect_request (git-fixes) - IB/mlx4: Separate tunnel and wire bufs parameters (git-fixes) - IB/mlx5: Add missing error code (git-fixes) - IB/mlx5: Add mutex destroy call to cap_mask_mutex mutex (git-fixes) - IB/mlx5: Fix error unwinding when set_has_smi_cap fails (git-fixes) - IB/mlx5: Return appropriate error code instead of ENOMEM (git-fixes) - IB/umad: Return EIO in case ofwhen device disassociated (git-fixes) - IB/umad: Return EPOLLERR in case of when device disassociated (git-fixes) - Input: wm97xx: Simplify resource management (git-fixes). - KVM: remember position in kvm-> vcpus array (bsc#1190972 LTC#194674). - NFS: Ensure the server had an up to date ctime before renaming (git-fixes). - NFSD: Fix the behavior of READ near OFFSET_MAX (bsc#1195957). - NFSv4: Handle case where the lookup of a directory fails (git-fixes). - NFSv4: nfs_atomic_open() can race when looking up a non-regular file (git-fixes). - PM: hibernate: Remove register_nosave_region_late() (git-fixes). - PM: s2idle: ACPI: Fix wakeup interrupts handling (git-fixes). - PM: wakeup: simplify the output logic of pm_show_wakelocks() (git-fixes). - RDMA/addr: Be strict with gid size (git-fixes) - RDMA/bnxt_re: Fix a double free in bnxt_qplib_alloc_res (git-fixes) - RDMA/bnxt_re: Fix error return code in bnxt_qplib_cq_process_terminal() (git-fixes) - RDMA/bnxt_re: Set queue pair state when being queried (git-fixes) - RDMA/cm: Fix an attempt to use non-valid pointer when cleaning timewait (git-fixes) - RDMA/cma: Use correct address when leaving multicast group (bsc#1181147). - RDMA/core: Always release restrack object (git-fixes) - RDMA/core: Do not access cm_id after its destruction (git-fixes) - RDMA/core: Do not indicate device ready when device enablement fails (git-fixes) - RDMA/core: Fix corrupted SL on passive side (git-fixes) - RDMA/core: Unify RoCE check and re-factor code (git-fixes) - RDMA/cxgb4: Fix adapter LE hash errors while destroying ipv6 listening server (git-fixes) - RDMA/cxgb4: Fix the reported max_recv_sge value (git-fixes) - RDMA/cxgb4: Validate the number of CQEs (git-fixes) - RDMA/cxgb4: add missing qpid increment (git-fixes) - RDMA/cxgb4: check for ipv6 address properly while destroying listener (git-fixes) - RDMA/hns: Add a check for current state before modifying QP (git-fixes) - RDMA/hns: Remove the portn field in UD SQ WQE (git-fixes) - RDMA/hns: Remove unnecessary access right set during INIT2INIT (git-fixes) - RDMA/i40iw: Address an mmap handler exploit in i40iw (git-fixes) - RDMA/i40iw: Fix error unwinding when i40iw_hmc_sd_one fails (git-fixes) - RDMA/mlx5: Fix corruption of reg_pages in mlx5_ib_rereg_user_mr() (git-fixes) - RDMA/mlx5: Fix potential race between destroy and CQE poll (git-fixes) - RDMA/mlx5: Fix query DCT via DEVX (git-fixes) - RDMA/mlx5: Fix type warning of sizeof in __mlx5_ib_alloc_counters() (git-fixes) - RDMA/mlx5: Fix wrong free of blue flame register on error (git-fixes) - RDMA/mlx5: Issue FW command to destroy SRQ on reentry (git-fixes) - RDMA/mlx5: Recover from fatal event in dual port mode (git-fixes) - RDMA/mlx5: Use the correct obj_id upon DEVX TIR creation (git-fixes) - RDMA/ocrdma: Fix use after free in ocrdma_dealloc_ucontext_pd() (git-fixes) - RDMA/rxe: Clear all QP fields if creation failed (git-fixes) - RDMA/rxe: Compute PSN windows correctly (git-fixes) - RDMA/rxe: Correct skb on loopback path (git-fixes) - RDMA/rxe: Fix coding error in rxe_rcv_mcast_pkt (git-fixes) - RDMA/rxe: Fix coding error in rxe_recv.c (git-fixes) - RDMA/rxe: Fix missing kconfig dependency on CRYPTO (git-fixes) - RDMA/rxe: Remove useless code in rxe_recv.c (git-fixes) - RDMA/siw: Fix a use after free in siw_alloc_mr (git-fixes) - RDMA/siw: Fix calculation of tx_valid_cpus size (git-fixes) - RDMA/siw: Fix handling of zero-sized Read and Receive Queues. (git-fixes) - RDMA/siw: Properly check send and receive CQ pointers (git-fixes) - RDMA/siw: Release xarray entry (git-fixes) - RDMA/ucma: Protect mc during concurrent multicast leaves (bsc#1181147). - RDMA/usnic: Fix memleak in find_free_vf_and_create_qp_grp (git-fixes) - RDMA/uverbs: Fix a NULL vs IS_ERR() bug (git-fixes) - RDMA/uverbs: Tidy input validation of ib_uverbs_rereg_mr() (git-fixes) - RMDA/sw: Do not allowdrivers using dma_virt_ops on highmem configs (git-fixes) - USB: core: Fix hang in usb_kill_urb by adding memory barriers (git-fixes). - USB: serial: ch341: add support for GW Instek USB2.0-Serial devices (git-fixes). - USB: serial: cp210x: add CPI Bulk Coin Recycler id (git-fixes). - USB: serial: cp210x: add NCR Retail IO box id (git-fixes). - USB: serial: ftdi_sio: add support for Brainboxes US-159/235/320 (git-fixes). - USB: serial: mos7840: fix probe error handling (git-fixes). - USB: serial: mos7840: remove duplicated 0xac24 device ID (git-fixes). - USB: serial: option: add ZTE MF286D modem (git-fixes). - ata: libata-core: Disable TRIM on M88V29 (git-fixes). - ax25: improve the incomplete fix to avoid UAF and NPD bugs (git-fixes). - blk-cgroup: fix missing put device in error path from blkg_conf_pref() (bsc#1195481). - blk-mq: always allow reserved allocation in hctx_may_queue (bsc#1193787). - blk-mq: avoid to iterate over stale request (bsc#1193787). - blk-mq: clear stale request in tags-> rq before freeing one request pool (bsc#1193787). - blk-mq: clearing flush request reference in tags-> rqs (bsc#1193787). - blk-mq: do not grab rq's refcount in blk_mq_check_expired() (bsc#1193787 git-fixes). - blk-mq: fix is_flush_rq (bsc#1193787 git-fixes). - blk-mq: fix kernel panic during iterating over flush request (bsc#1193787 git-fixes). - blk-mq: grab rq-> refcount before calling -> fn in blk_mq_tagset_busy_iter (bsc#1193787). - blk-mq: introduce blk_mq_set_request_complete (git-fixes). - blk-mq: mark flush request as IDLE in flush_end_io() (bsc#1193787). - blk-tag: Hide spin_lock (bsc#1193787). - block: avoid double io accounting for flush request (bsc#1193787). - block: do not send a rezise udev event for hidden block device (bsc#1193096). - block: mark flush request as IDLE when it is really finished (bsc#1193787). - bonding: pair enable_port with slave_arr_updates (git-fixes). - bpf: Adjust BTF log size limit (git-fixes). - bpf: Disallow BPF_LOG_KERNEL log level for bpf(BPF_BTF_LOAD) (git-fixes). - btrfs: check for missing device in btrfs_trim_fs (bsc#1195701). - btrfs: check worker before need_preemptive_reclaim (bsc#1196195). - btrfs: do not do preemptive flushing if the majority is global rsv (bsc#1196195). - btrfs: do not include the global rsv size in the preemptive used amount (bsc#1196195). - btrfs: handle preemptive delalloc flushing slightly differently (bsc#1196195). - btrfs: make sure SB_I_VERSION does not get unset by remount (bsc#1192210). - btrfs: only clamp the first time we have to start flushing (bsc#1196195). - btrfs: only ignore delalloc if delalloc is much smaller than ordered (bsc#1196195). - btrfs: reduce the preemptive flushing threshold to 90% (bsc#1196195). - btrfs: take into account global rsv in need_preemptive_reclaim (bsc#1196195). - btrfs: use the global rsv size in the preemptive thresh calculation (bsc#1196195). - ceph: properly put ceph_string reference after async create attempt (bsc#1195798). - ceph: set pool_ns in new inode layout for async creates (bsc#1195799). - dma-buf: heaps: Fix potential spectre v1 gadget (git-fixes). - drm/amdgpu: fix logic inversion in check (git-fixes). - drm/i915/gvt: Make DRM_I915_GVT depend on X86 (git-fixes). - drm/i915/gvt: clean up kernel-doc in gtt.c (git-fixes). - drm/i915/opregion: check port number bounds for SWSCI display power state (git-fixes). - drm/i915/overlay: Prevent divide by zero bugs in scaling (git-fixes). - drm/i915: Correctly populate use_sagv_wm for all pipes (git-fixes). - drm/i915: Fix bw atomic check when switching between SAGV vs. no SAGV (git-fixes). - drm/msm/dsi: Fix missing put_device() call in dsi_get_phy (git-fixes). - drm/nouveau: fix off by one in BIOS boundary checking (git-fixes). - drm/panel: simple: Assign data from panel_dpi_probe() correctly (git-fixes). - drm/radeon: Fix backlight control on iMac 12,1 (git-fixes). - drm/rockchip: dw_hdmi: Do not leave clock enabled in error case (git-fixes). - drm/rockchip: vop: Correct RK3399 VOP register fields (git-fixes). - drm/vc4: hdmi: Allow DBLCLK modes even if horz timing is odd (git-fixes). - drm: panel-orientation-quirks: Add quirk for the 1Netbook OneXPlayer (git-fixes). - ext4: check for inconsistent extents between index and leaf block (bsc#1194163 bsc#1196339). - ext4: check for out-of-order index extents in ext4_valid_extent_entries() (bsc#1194163 bsc#1196339). - ext4: fix an use-after-free issue about data=journal writeback mode (bsc#1195482). - ext4: make sure quota gets properly shutdown on error (bsc#1195480). - ext4: prevent partial update of the extent blocks (bsc#1194163 bsc#1196339). - fsnotify: fix fsnotify hooks in pseudo filesystems (bsc#1195479). - fsnotify: invalidate dcache before IN_DELETE event (bsc#1195478). - gve: Add RX context (bsc#1191655). - gve: Add a jumbo-frame device option (bsc#1191655). - gve: Add consumed counts to ethtool stats (bsc#1191655). - gve: Add optional metadata descriptor type GVE_TXD_MTD (bsc#1191655). - gve: Correct order of processing device options (bsc#1191655). - gve: Fix GFP flags when allocing pages (git-fixes). - gve: Fix off by one in gve_tx_timeout() (bsc#1191655). - gve: Implement packet continuation for RX (bsc#1191655). - gve: Implement suspend/resume/shutdown (bsc#1191655). - gve: Move the irq db indexes out of the ntfy block struct (bsc#1191655). - gve: Recording rx queue before sending to napi (bsc#1191655). - gve: Recover from queue stall due to missed IRQ (bsc#1191655). - gve: Update gve_free_queue_page_list signature (bsc#1191655). - gve: Use kvcalloc() instead of kvzalloc() (bsc#1191655). - gve: fix for null pointer dereference (bsc#1191655). - gve: fix the wrong AdminQ buffer queue index check (bsc#1176940). - gve: fixunmatched u64_stats_update_end() (bsc#1191655). - gve: remove memory barrier around seqno (bsc#1191655). - i2c: brcmstb: fix support for DSL and CM variants (git-fixes). - i40e: Fix for failed to init adminq while VF reset (git-fixes). - i40e: Fix issue when maximum queues is exceeded (git-fixes). - i40e: Fix queues reservation for XDP (git-fixes). - i40e: Increase delay to 1 s after global EMP reset (git-fixes). - i40e: fix unsigned stat widths (git-fixes). - i40iw: Add support to make destroy QP synchronous (git-fixes) - ibmvnic: Allow queueing resets during probe (bsc#1196516 ltc#196391). - ibmvnic: clear fop when retrying probe (bsc#1196516 ltc#196391). - ibmvnic: complete init_done on transport events (bsc#1196516 ltc#196391). - ibmvnic: define flush_reset_queue helper (bsc#1196516 ltc#196391). - ibmvnic: do not release napi in __ibmvnic_open() (bsc#1195668 ltc#195811). - ibmvnic: free reset-work-item when flushing (bsc#1196516 ltc#196391). - ibmvnic: init init_done_rc earlier (bsc#1196516 ltc#196391). - ibmvnic: initialize rc before completing wait (bsc#1196516 ltc#196391). - ibmvnic: register netdev after init of adapter (bsc#1196516 ltc#196391). - ibmvnic: schedule failover only if vioctl fails (bsc#1196400 ltc#195815). - ice: fix IPIP and SIT TSO offload (git-fixes). - ice: fix an error code in ice_cfg_phy_fec() (jsc#SLE-12878). - ima: Allow template selection with ima_template[_fmt]= after ima_hash (git-fixes). - ima: Do not print policy rule with inactive LSM labels (git-fixes). - ima: Remove ima_policy file before directory (git-fixes). - integrity: Make function integrity_add_key() static (git-fixes). - integrity: check the return value of audit_log_start() (git-fixes). - integrity: double check iint_cache was initialized (git-fixes). - iommu/amd: Fix loop timeout issue in iommu_ga_log_enable() (git-fixes). - iommu/amd: Remove useless irq affinity notifier (git-fixes). - iommu/amd: Restore GA log/tailpointer on host resume (git-fixes). - iommu/amd: X2apic mode: mask/unmask interrupts on suspend/resume (git-fixes). - iommu/amd: X2apic mode: re-enable after resume (git-fixes). - iommu/amd: X2apic mode: setup the INTX registers on mask/unmask (git-fixes). - iommu/io-pgtable-arm-v7s: Add error handle for page table allocation failure (git-fixes). - iommu/io-pgtable-arm: Fix table descriptor paddr formatting (git-fixes). - iommu/iova: Fix race between FQ timeout and teardown (git-fixes). - iommu/vt-d: Fix potential memory leak in intel_setup_irq_remapping() (git-fixes). - iwlwifi: fix use-after-free (git-fixes). - iwlwifi: pcie: fix locking when "HW not ready" (git-fixes). - iwlwifi: pcie: gen2: fix locking when "HW not ready" (git-fixes). - ixgbevf: Require large buffers for build_skb on 82599VF (git-fixes). - kABI fixup after adding vcpu_idx to struct kvm_cpu (bsc#1190972 LTC#194674). - kABI: Fix kABI for AMD IOMMU driver (git-fixes). - kabi: Hide changes to s390/AP structures (jsc#SLE-20807). - lib/iov_iter: initialize "flags" in new pipe_buffer (bsc#1196584). - libsubcmd: Fix use-after-free for realloc(..., 0) (git-fixes). - md/raid5: fix oops during stripe resizing (bsc#1181588). - misc: fastrpc: avoid double fput() on failed usercopy (git-fixes). - mmc: sdhci-of-esdhc: Check for error num after setting mask (git-fixes). - mtd: rawnand: brcmnand: Fixed incorrect sub-page ECC status (git-fixes). - mtd: rawnand: gpmi: do not leak PM reference in error path (git-fixes). - mtd: rawnand: qcom: Fix clock sequencing in qcom_nandc_probe() (git-fixes). - net/ibmvnic: Cleanup workaround doing an EOI after partition migration (bsc#1089644 ltc#166495 ltc#165544 git-fixes). - net/mlx5e: Fix handling of wrong devices during bond netevent (jsc#SLE-15172). - net: macb: Align the dma and coherent dma masks (git-fixes). - net: mdio: aspeed: Add missing MODULE_DEVICE_TABLE (bsc#1176447). - net: phy: marvell:Fix MDI-x polarity setting in 88e1118-compatible PHYs (git-fixes). - net: phy: marvell: Fix RGMII Tx/Rx delays setting in 88e1121-compatible PHYs (git-fixes). - net: phy: marvell: configure RGMII delays for 88E1118 (git-fixes). - net: usb: qmi_wwan: Add support for Dell DW5829e (git-fixes). - nfp: flower: fix ida_idx not being released (bsc#1154353). - nfsd: allow delegation state ids to be revoked and then freed (bsc#1192483). - nfsd: allow lock state ids to be revoked and then freed (bsc#1192483). - nfsd: allow open state ids to be revoked and then freed (bsc#1192483). - nfsd: do not admin-revoke NSv4.0 state ids (bsc#1192483). - nfsd: prepare for supporting admin-revocation of state (bsc#1192483). - nvme-core: use list_add_tail_rcu instead of list_add_tail for nvme_init_ns_head (git-fixes). - nvme-fabrics: avoid double completions in nvmf_fail_nonready_command (git-fixes). - nvme-fabrics: fix state check in nvmf_ctlr_matches_baseopts() (bsc#1195012). - nvme-fabrics: ignore invalid fast_io_fail_tmo values (git-fixes). - nvme-fabrics: remove superfluous nvmf_host_put in nvmf_parse_options (git-fixes). - nvme-multipath: fix ANA state updates when a namespace is not present (git-fixes). - nvme-tcp: fix data digest pointer calculation (git-fixes). - nvme-tcp: fix incorrect h2cdata pdu offset accounting (git-fixes). - nvme-tcp: fix memory leak when freeing a queue (git-fixes). - nvme-tcp: fix possible use-after-completion (git-fixes). - nvme-tcp: validate R2T PDU in nvme_tcp_handle_r2t() (git-fixes). - nvme: also mark passthrough-only namespaces ready in nvme_update_ns_info (git-fixes). - nvme: do not return an error from nvme_configure_metadata (git-fixes). - nvme: fix use after free when disconnecting a reconnecting ctrl (git-fixes). - nvme: introduce a nvme_host_path_error helper (git-fixes). - nvme: let namespace probing continue for unsupported features (git-fixes). - nvme:refactor ns-> ctrl by request (git-fixes). - pinctrl: intel: Fix a glitch when updating IRQ flags on a preconfigured line (git-fixes). - pinctrl: intel: fix unexpected interrupt (git-fixes). - powerpc/64: Move paca allocation later in boot (bsc#1190812). - powerpc/64s: Fix debugfs_simple_attr.cocci warnings (bsc#1157038 bsc#1157923 ltc#182612 git-fixes). - powerpc/perf: Fix power_pmu_disable to call clear_pmi_irq_pending only if PMI is pending (bsc#1156395). - powerpc/pseries/ddw: Revert "Extend upper limit for huge DMA window for persistent memory" (bsc#1195995 ltc#196394). - powerpc/pseries: read the lpar name from the firmware (bsc#1187716 ltc#193451). - powerpc: Set crashkernel offset to mid of RMA region (bsc#1190812). - powerpc: add link stack flush mitigation status in debugfs (bsc#1157038 bsc#1157923 ltc#182612 git-fixes). - rpmsg: char: Fix race between the release of rpmsg_ctrldev and cdev (git-fixes). - rpmsg: char: Fix race between the release of rpmsg_eptdev and cdev (git-fixes). - s390/AP: support new dynamic AP bus size limit (jsc#SLE-20807). - s390/bpf: Fix 64-bit subtraction of the -0x80000000 constant (git-fixes). - s390/bpf: Fix optimizing out zero-extensions (git-fixes). - s390/cio: make ccw_device_dma_* more robust (bsc#1193243 LTC#195549). - s390/cio: verify the driver availability for path_event call (bsc#1195928 LTC#196418). - s390/cpumf: Support for CPU Measurement Facility CSVN 7 (bsc#1195081 LTC#196088). - s390/cpumf: Support for CPU Measurement Sampling Facility LS bit (bsc#1195081 LTC#196088). - s390/pci: add s390_iommu_aperture kernel parameter (bsc#1193233 LTC#195540). - s390/pci: move pseudo-MMIO to prevent MIO overlap (bsc#1194967 LTC#196028). - s390/protvirt: fix error return code in uv_info_init() (jsc#SLE-22135). - s390/sclp: fix Secure-IPL facility detection (bsc#1191741 LTC#194816). - s390/uv: add prot virt guest/host indication files(jsc#SLE-22135). - s390/uv: fix prot virt host indication compilation (jsc#SLE-22135). - scripts/dtc: only append to HOST_EXTRACFLAGS instead of overwriting (git-fixes). - scsi: core: Add a new error code DID_TRANSPORT_MARGINAL in scsi.h (bsc#1195506). - scsi: core: Add limitless cmd retry support (bsc#1195506). - scsi: core: No retries on abort success (bsc#1195506). - scsi: kABI fix for 'eh_should_retry_cmd' (bsc#1195506). - scsi: lpfc: Add support for eh_should_retry_cmd() (bsc#1195506). - scsi: lpfc: Fix pt2pt NVMe PRLI reject LOGO loop (bsc#1189126). - scsi: qla2xxx: Add devids and conditionals for 28xx (bsc#1195823). - scsi: qla2xxx: Add marginal path handling support (bsc#1195506). - scsi: qla2xxx: Add ql2xnvme_queues module param to configure number of NVMe queues (bsc#1195823). - scsi: qla2xxx: Add qla2x00_async_done() for async routines (bsc#1195823). - scsi: qla2xxx: Add retry for exec firmware (bsc#1195823). - scsi: qla2xxx: Check for firmware dump already collected (bsc#1195823). - scsi: qla2xxx: Fix T10 PI tag escape and IP guard options for 28XX adapters (bsc#1195823). - scsi: qla2xxx: Fix device reconnect in loop topology (bsc#1195823). - scsi: qla2xxx: Fix premature hw access after PCI error (bsc#1195823). - scsi: qla2xxx: Fix scheduling while atomic (bsc#1195823). - scsi: qla2xxx: Fix stuck session in gpdb (bsc#1195823). - scsi: qla2xxx: Fix unmap of already freed sgl (bsc#1195823). - scsi: qla2xxx: Fix warning for missing error code (bsc#1195823). - scsi: qla2xxx: Fix warning message due to adisc being flushed (bsc#1195823). - scsi: qla2xxx: Fix wrong FDMI data for 64G adapter (bsc#1195823). - scsi: qla2xxx: Implement ref count for SRB (bsc#1195823). - scsi: qla2xxx: Refactor asynchronous command initialization (bsc#1195823). - scsi: qla2xxx: Remove a declaration (bsc#1195823). - scsi: qla2xxx: Remove unused qla_sess_op_cmd_list from scsi_qla_host_t (bsc#1195823). - scsi:qla2xxx: Return -ENOMEM if kzalloc() fails (bsc#1195823). - scsi: qla2xxx: Suppress a kernel complaint in qla_create_qpair() (bsc#1195823). - scsi: qla2xxx: Update version to 10.02.07.200-k (bsc#1195823). - scsi: qla2xxx: Update version to 10.02.07.300-k (bsc#1195823). - scsi: qla2xxx: edif: Fix clang warning (bsc#1195823). - scsi: qla2xxx: edif: Fix inconsistent check of db_flags (bsc#1195823). - scsi: qla2xxx: edif: Reduce connection thrash (bsc#1195823). - scsi: qla2xxx: edif: Replace list_for_each_safe with list_for_each_entry_safe (bsc#1195823). - scsi: qla2xxx: edif: Tweak trace message (bsc#1195823). - scsi: scsi_transport_fc: Add a new rport state FC_PORTSTATE_MARGINAL (bsc#1195506). - scsi: scsi_transport_fc: Add store capability to rport port_state in sysfs (bsc#1195506). - scsi: target: iscsi: Fix cmd abort fabric stop race (bsc#1195286). - scsi: zfcp: Fix failed recovery on gone remote port with non-NPIV FCP devices (bsc#1195378 LTC#196244). - scsi_transport_fc: kabi fix blank out FC_PORTSTATE_MARGINAL (bsc#1195506). - spi: bcm-qspi: check for valid cs before applying chip select (git-fixes). - spi: mediatek: Avoid NULL pointer crash in interrupt (git-fixes). - spi: meson-spicc: add IRQ check in meson_spicc_probe (git-fixes). - staging/fbtft: Fix backlight (git-fixes). - staging: fbtft: Fix error path in fbtft_driver_module_init() (git-fixes). - tracing: Do not inc err_log entry count if entry allocation fails (git-fixes). - tracing: Dump stacktrace trigger to the corresponding instance (git-fixes). - tracing: Fix smatch warning for null glob in event_hist_trigger_parse() (git-fixes). - tracing: Have traceon and traceoff trigger honor the instance (git-fixes). - tracing: Propagate is_signed to expression (git-fixes). - tty: Add support for Brainboxes UC cards (git-fixes). - udf: Fix NULL ptr deref when converting from inline format (bsc#1195476). - udf: Restorei_lenAlloc when inode expansion fails (bsc#1195477). - usb-storage: Add unusual-devs entry for VL817 USB-SATA bridge (git-fixes). - usb: dwc2: Fix NULL qh in dwc2_queue_transaction (git-fixes). - usb: dwc2: gadget: do not try to disable ep0 in dwc2_hsotg_suspend (git-fixes). - usb: dwc3: do not set gadget-> is_otg flag (git-fixes). - usb: dwc3: gadget: Prevent core from processing stale TRBs (git-fixes). - usb: f_fs: Fix use-after-free for epfile (git-fixes). - usb: gadget: f_uac2: Define specific wTerminalType (git-fixes). - usb: gadget: rndis: check size of RNDIS_MSG_SET command (git-fixes). - usb: gadget: s3c: remove unused 'udc' variable (git-fixes). - usb: gadget: udc: renesas_usb3: Fix host to USB_ROLE_NONE transition (git-fixes). - usb: host: ehci-tegra: Fix error handling in tegra_ehci_probe() (git-fixes). - usb: ulpi: Call of_node_put correctly (git-fixes). - usb: ulpi: Move of_node_put to ulpi_dev_release (git-fixes). - xhci-pci: Allow host runtime PM as default for Intel Alpine Ridge LP (git-fixes). Special Instructions and Notes: Please reboot the system after installing this update. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.3: zypper in -t patch openSUSE-SLE-15.3-2022-755=1 Package List: - openSUSE Leap 15.3 (x86_64): cluster-md-kmp-azure-5.3.18-150300.38.47.1 cluster-md-kmp-azure-debuginfo-5.3.18-150300.38.47.1 dlm-kmp-azure-5.3.18-150300.38.47.1 dlm-kmp-azure-debuginfo-5.3.18-150300.38.47.1 gfs2-kmp-azure-5.3.18-150300.38.47.1 gfs2-kmp-azure-debuginfo-5.3.18-150300.38.47.1 kernel-azure-5.3.18-150300.38.47.1 kernel-azure-debuginfo-5.3.18-150300.38.47.1 kernel-azure-debugsource-5.3.18-150300.38.47.1 kernel-azure-devel-5.3.18-150300.38.47.1 kernel-azure-devel-debuginfo-5.3.18-150300.38.47.1 kernel-azure-extra-5.3.18-150300.38.47.1 kernel-azure-extra-debuginfo-5.3.18-150300.38.47.1 kernel-azure-livepatch-devel-5.3.18-150300.38.47.1 kernel-azure-optional-5.3.18-150300.38.47.1 kernel-azure-optional-debuginfo-5.3.18-150300.38.47.1 kernel-syms-azure-5.3.18-150300.38.47.1 kselftests-kmp-azure-5.3.18-150300.38.47.1 kselftests-kmp-azure-debuginfo-5.3.18-150300.38.47.1 ocfs2-kmp-azure-5.3.18-150300.38.47.1 ocfs2-kmp-azure-debuginfo-5.3.18-150300.38.47.1 reiserfs-kmp-azure-5.3.18-150300.38.47.1 reiserfs-kmp-azure-debuginfo-5.3.18-150300.38.47.1 - openSUSE Leap 15.3 (noarch): kernel-devel-azure-5.3.18-150300.38.47.1 kernel-source-azure-5.3.18-150300.38.47.1 References: https://www.suse.com/security/cve/CVE-2022-0001.html https://www.suse.com/security/cve/CVE-2022-0002.html https://www.suse.com/security/cve/CVE-2022-0492.html https://www.suse.com/security/cve/CVE-2022-0516.html https://www.suse.com/security/cve/CVE-2022-0847.html https://www.suse.com/security/cve/CVE-2022-25375.html https://bugzilla.suse.com/1089644 https://bugzilla.suse.com/1154353 https://bugzilla.suse.com/1156395 https://bugzilla.suse.com/1157038 https://bugzilla.suse.com/1157923 https://bugzilla.suse.com/1176447 https://bugzilla.suse.com/1176940 https://bugzilla.suse.com/1178134 https://bugzilla.suse.com/1181147 https://bugzilla.suse.com/1181588 https://bugzilla.suse.com/1183872 https://bugzilla.suse.com/1187716 https://bugzilla.suse.com/1188404 https://bugzilla.suse.com/1189126 https://bugzilla.suse.com/1190812 https://bugzilla.suse.com/1190972 https://bugzilla.suse.com/1191580 https://bugzilla.suse.com/1191655 https://bugzilla.suse.com/1191741 https://bugzilla.suse.com/1192210 https://bugzilla.suse.com/1192483 https://bugzilla.suse.com/1193096 https://bugzilla.suse.com/1193233 https://bugzilla.suse.com/1193243 https://bugzilla.suse.com/1193787 https://bugzilla.suse.com/1194163 https://bugzilla.suse.com/1194967 https://bugzilla.suse.com/1195012 https://bugzilla.suse.com/1195081 https://bugzilla.suse.com/1195142 https://bugzilla.suse.com/1195352 https://bugzilla.suse.com/1195378 https://bugzilla.suse.com/1195476 https://bugzilla.suse.com/1195477 https://bugzilla.suse.com/1195478 https://bugzilla.suse.com/1195479 https://bugzilla.suse.com/1195480 https://bugzilla.suse.com/1195481 https://bugzilla.suse.com/1195482 https://bugzilla.suse.com/1195506 https://bugzilla.suse.com/1195516 https://bugzilla.suse.com/1195543 https://bugzilla.suse.com/1195668 https://bugzilla.suse.com/1195701 https://bugzilla.suse.com/1195798 https://bugzilla.suse.com/1195799 https://bugzilla.suse.com/1195823 https://bugzilla.suse.com/1195908 https://bugzilla.suse.com/1195928 https://bugzilla.suse.com/1195947 https://bugzilla.suse.com/1195957 https://bugzilla.suse.com/1195995 https://bugzilla.suse.com/1196195 https://bugzilla.suse.com/1196235 https://bugzilla.suse.com/1196339 https://bugzilla.suse.com/1196400 https://bugzilla.suse.com/1196403 https://bugzilla.suse.com/1196516 https://bugzilla.suse.com/1196584 https://bugzilla.suse.com/1196601 https://bugzilla.suse.com/1196612 https://bugzilla.suse.com/1196776 . A significant update has been issued for the Linux Kernel in openSUSE, tackling critical vulnerabilities and enhancing system reliability. For details and guidance, check the documentation. Kernel Update, openSUSE Security, Security Fix. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Mar 08, 2022 Critical OpenSUSE
100

SUSE Linux 11-SP4: 2021:14764-1 Important Kernel Security Fix

An update that solves 9 vulnerabilities and has two fixes is now available. . SUSE Security Update: Security update for the Linux Kernel ______________________________________________________________________________ Announcement ID: SUSE-SU-2021:14764-1 Rating: important References: #1184081 #1184391 #1184611 #1185859 #1185861 #1185862 #1185863 #1186062 #1187038 #1187452 #1187595 Cross-References: CVE-2020-24586 CVE-2020-24587 CVE-2020-24588 CVE-2020-26139 CVE-2020-36386 CVE-2021-0512 CVE-2021-29154 CVE-2021-32399 CVE-2021-34693 CVSS scores: CVE-2020-24586 (NVD) : 3.5 CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N CVE-2020-24586 (SUSE): 4.7 CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:N CVE-2020-24587 (NVD) : 2.6 CVSS:3.1/AV:A/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N CVE-2020-24587 (SUSE): 4.2 CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N CVE-2020-24588 (NVD) : 3.5 CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N CVE-2020-24588 (SUSE): 6.5 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N CVE-2020-26139 (NVD) : 5.3 CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H CVE-2020-26139 (SUSE): 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N CVE-2020-36386 (NVD) : 7.1 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H CVE-2020-36386 (SUSE): 5.1 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L CVE-2021-0512 (SUSE): 8.4 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVE-2021-29154 (NVD) : 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVE-2021-29154 (SUSE): 7 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H CVE-2021-32399 (NVD) : 7 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H CVE-2021-32399 (SUSE): 7.4CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H CVE-2021-34693 (SUSE): 6.2 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N Affected Products: SUSE Linux Enterprise Server 11-SP4-LTSS SUSE Linux Enterprise Server 11-EXTRA SUSE Linux Enterprise Debuginfo 11-SP4 ______________________________________________________________________________ An update that solves 9 vulnerabilities and has two fixes is now available. Description: The SUSE Linux Enterprise 11 SP4 kernel was updated to receive various security and bugfixes. The following security bugs were fixed: - CVE-2021-0512: Fixed a possible out of bounds write due to a heap buffer overflow in __hidinput_change_resolution_multipliers. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. (bsc#1187595) - CVE-2021-34693: Fixed a bug in net/can/bcm.c which could allow local users to obtain sensitive information from kernel stack memory because parts of a data structure are uninitialized. (bsc#1187452) - CVE-2020-36386: Fixed an out-of-bounds read in hci_extended_inquiry_result_evt. (bsc#1187038) - CVE-2020-24588: Fixed a bug that could allow an adversary to abuse devices that support receiving non-SSP A-MSDU frames to inject arbitrary network packets. (bsc#1185861 bsc#1185863) - CVE-2021-29154: Fixed an incorrect computation of branch displacements in the BPF JIT compilers, which could allow to execute arbitrary code within the kernel context. (bsc#1184391) - CVE-2021-32399: Fixed a race condition in net/bluetooth/hci_request.c for removal of the HCI controller. (bsc#1184611) - CVE-2020-24586: Fixed a bug that, under the right circumstances, allows to inject arbitrary network packets and/or exfiltrate user data when another device sends fragmented frames encrypted using WEP, CCMP, or GCMP.(bsc#1185859 bsc#1185863) - CVE-2020-26139: Fixed a bug that allows an Access Point (AP) to forward EAPOL frames to other clients even though the sender has not yet successfully authenticated. This might be abused in projected Wi-Fi networks to launch denial-of-service attacks against connected clients and made it easier to exploit other vulnerabilities in connected clients. (bsc#1185863 bsc#1186062) - CVE-2020-24587: Fixed a bug that allows an adversary to decrypt selected fragments when another device sends fragmented frames and the WEP, CCMP, or GCMP encryption key is periodically renewed. (bsc#1185862 bsc#1185863) The following non-security bugs were fixed: - md: do not flush workqueue unconditionally in md_open (bsc#1184081). - md: factor out a mddev_find_locked helper from mddev_find (bsc#1184081). - md: md_open returns -EBUSY when entering racing area (bsc#1184081). - md: split mddev_find (bsc#1184081). Special Instructions and Notes: Please reboot the system after installing this update. Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Server 11-SP4-LTSS: zypper in -t patch slessp4-kernel-source-14764=1 - SUSE Linux Enterprise Server 11-EXTRA: zypper in -t patch slexsp3-kernel-source-14764=1 - SUSE Linux Enterprise Debuginfo 11-SP4: zypper in -t patch dbgsp4-kernel-source-14764=1 Package List: - SUSE Linux Enterprise Server 11-SP4-LTSS (i586 ppc64 s390x x86_64): kernel-default-3.0.101-108.129.1 kernel-default-base-3.0.101-108.129.1 kernel-default-devel-3.0.101-108.129.1 kernel-source-3.0.101-108.129.1 kernel-syms-3.0.101-108.129.1 kernel-trace-3.0.101-108.129.1 kernel-trace-base-3.0.101-108.129.1 kernel-trace-devel-3.0.101-108.129.1 - SUSE Linux EnterpriseServer 11-SP4-LTSS (i586 x86_64): kernel-ec2-3.0.101-108.129.1 kernel-ec2-base-3.0.101-108.129.1 kernel-ec2-devel-3.0.101-108.129.1 kernel-xen-3.0.101-108.129.1 kernel-xen-base-3.0.101-108.129.1 kernel-xen-devel-3.0.101-108.129.1 - SUSE Linux Enterprise Server 11-SP4-LTSS (ppc64): kernel-bigmem-3.0.101-108.129.1 kernel-bigmem-base-3.0.101-108.129.1 kernel-bigmem-devel-3.0.101-108.129.1 kernel-ppc64-3.0.101-108.129.1 kernel-ppc64-base-3.0.101-108.129.1 kernel-ppc64-devel-3.0.101-108.129.1 - SUSE Linux Enterprise Server 11-SP4-LTSS (s390x): kernel-default-man-3.0.101-108.129.1 - SUSE Linux Enterprise Server 11-SP4-LTSS (i586): kernel-pae-3.0.101-108.129.1 kernel-pae-base-3.0.101-108.129.1 kernel-pae-devel-3.0.101-108.129.1 - SUSE Linux Enterprise Server 11-EXTRA (i586 ia64 ppc64 s390x x86_64): kernel-default-extra-3.0.101-108.129.1 - SUSE Linux Enterprise Server 11-EXTRA (i586 x86_64): kernel-xen-extra-3.0.101-108.129.1 - SUSE Linux Enterprise Server 11-EXTRA (x86_64): kernel-trace-extra-3.0.101-108.129.1 - SUSE Linux Enterprise Server 11-EXTRA (ppc64): kernel-ppc64-extra-3.0.101-108.129.1 - SUSE Linux Enterprise Server 11-EXTRA (i586): kernel-pae-extra-3.0.101-108.129.1 - SUSE Linux Enterprise Debuginfo 11-SP4 (i586 ppc64 s390x x86_64): kernel-default-debuginfo-3.0.101-108.129.1 kernel-default-debugsource-3.0.101-108.129.1 kernel-trace-debuginfo-3.0.101-108.129.1 kernel-trace-debugsource-3.0.101-108.129.1 - SUSE Linux Enterprise Debuginfo 11-SP4 (i586 s390x x86_64): kernel-default-devel-debuginfo-3.0.101-108.129.1 kernel-trace-devel-debuginfo-3.0.101-108.129.1 - SUSE Linux Enterprise Debuginfo 11-SP4 (i586 x86_64): kernel-ec2-debuginfo-3.0.101-108.129.1 kernel-ec2-debugsource-3.0.101-108.129.1 kernel-xen-debuginfo-3.0.101-108.129.1 kernel-xen-debugsource-3.0.101-108.129.1 kernel-xen-devel-debuginfo-3.0.101-108.129.1 - SUSE Linux Enterprise Debuginfo 11-SP4 (ppc64): kernel-bigmem-debuginfo-3.0.101-108.129.1 kernel-bigmem-debugsource-3.0.101-108.129.1 kernel-ppc64-debuginfo-3.0.101-108.129.1 kernel-ppc64-debugsource-3.0.101-108.129.1 - SUSE Linux Enterprise Debuginfo 11-SP4 (i586): kernel-pae-debuginfo-3.0.101-108.129.1 kernel-pae-debugsource-3.0.101-108.129.1 kernel-pae-devel-debuginfo-3.0.101-108.129.1 References: https://www.suse.com/security/cve/CVE-2020-24586.html https://www.suse.com/security/cve/CVE-2020-24587.html https://www.suse.com/security/cve/CVE-2020-24588.html https://www.suse.com/security/cve/CVE-2020-26139.html https://www.suse.com/security/cve/CVE-2020-36386.html https://www.suse.com/security/cve/CVE-2021-0512.html https://www.suse.com/security/cve/CVE-2021-29154.html https://www.suse.com/security/cve/CVE-2021-32399.html https://www.suse.com/security/cve/CVE-2021-34693.html https://bugzilla.suse.com/1184081 https://bugzilla.suse.com/1184391 https://bugzilla.suse.com/1184611 https://bugzilla.suse.com/1185859 https://bugzilla.suse.com/1185861 https://bugzilla.suse.com/1185862 https://bugzilla.suse.com/1185863 https://bugzilla.suse.com/1186062 https://bugzilla.suse.com/1187038 https://bugzilla.suse.com/1187452 https://bugzilla.suse.com/1187595 . SUSE has issued a Security Update for the Linux Kernel that addresses 9 vulnerabilities deemed critical. Prompt response is advised.. SUSE Linux Kernel Update, Local Privilege Escalation, Exploit Mitigation. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jul 13, 2021 Important SuSE
172

Ubuntu 5.10, 6.06 LTS, 6.10 High Severity Kernel Exploits

The following CVEIDs are covered by this advisory: CVE-2006-4572, CVE-2006-4813, CVE-2006-4997, CVE-2006-5158, CVE-2006-5173, CVE-2006-5619, CVE-2006-5648, CVE-2006-5649, CVE-2006-5701, CVE-2006-5751 . =========================================================== Ubuntu Security Notice USN-395-1 December 13, 2006 linux-source-2.6.12/-2.6.15/-2.6.17 vulnerabilities CVE-2006-4572, CVE-2006-4813, CVE-2006-4997, CVE-2006-5158, CVE-2006-5173, CVE-2006-5619, CVE-2006-5648, CVE-2006-5649, CVE-2006-5701, CVE-2006-5751 ========================================================== A security issue affects the following Ubuntu releases: Ubuntu 5.10 Ubuntu 6.06 LTS Ubuntu 6.10 This advisory also applies to the corresponding versions of Kubuntu, Edubuntu, and Xubuntu. The problem can be corrected by upgrading your system to the following package versions: Ubuntu 5.10: linux-image-2.6.12-10-386 2.6.12-10.42 linux-image-2.6.12-10-686 2.6.12-10.42 linux-image-2.6.12-10-686-smp 2.6.12-10.42 linux-image-2.6.12-10-amd64-generic 2.6.12-10.42 linux-image-2.6.12-10-amd64-k8 2.6.12-10.42 linux-image-2.6.12-10-amd64-k8-smp 2.6.12-10.42 linux-image-2.6.12-10-amd64-xeon 2.6.12-10.42 linux-image-2.6.12-10-k7 2.6.12-10.42 linux-image-2.6.12-10-k7-smp 2.6.12-10.42 linux-image-2.6.12-10-powerpc 2.6.12-10.42 linux-image-2.6.12-10-powerpc-smp 2.6.12-10.42 linux-image-2.6.12-10-powerpc64-smp 2.6.12-10.42 linux-image-2.6.12-10-sparc64 2.6.12-10.42 linux-image-2.6.12-10-sparc64-smp 2.6.12-10.42 linux-patch-ubuntu-2.6.12 2.6.12-10.42 Ubuntu 6.06 LTS: linux-image-2.6.15-27-386 2.6.15-27.50 linux-image-2.6.15-27-686 2.6.15-27.50 linux-image-2.6.15-27-amd64-generic 2.6.15-27.50 linux-image-2.6.15-27-amd64-k8 2.6.15-27.50 linux-image-2.6.15-27-amd64-server 2.6.15-27.50 linux-image-2.6.15-27-amd64-xeon 2.6.15-27.50 linux-image-2.6.15-27-k7 2.6.15-27.50 linux-image-2.6.15-27-powerpc 2.6.15-27.50 linux-image-2.6.15-27-powerpc-smp 2.6.15-27.50 linux-image-2.6.15-27-powerpc64-smp 2.6.15-27.50 linux-image-2.6.15-27-server 2.6.15-27.50 linux-image-2.6.15-27-server-bigiron 2.6.15-27.50 linux-image-2.6.15-27-sparc64 2.6.15-27.50 linux-image-2.6.15-27-sparc64-smp 2.6.15-27.50 linux-source-2.6.15 2.6.15-27.50 Ubuntu 6.10: linux-image-2.6.17-10-386 2.6.17.1-10.34 linux-image-2.6.17-10-generic 2.6.17.1-10.34 linux-image-2.6.17-10-powerpc 2.6.17.1-10.34 linux-image-2.6.17-10-powerpc-smp 2.6.17.1-10.34 linux-image-2.6.17-10-powerpc64-smp 2.6.17.1-10.34 linux-image-2.6.17-10-server 2.6.17.1-10.34 linux-image-2.6.17-10-server-bigiron 2.6.17.1-10.34 linux-image-2.6.17-10-sparc64 2.6.17.1-10.34 linux-image-2.6.17-10-sparc64-smp 2.6.17.1-10.34 After a standard system upgrade you need to reboot your computer to effect the necessary changes. Details follow: Mark Dowd discovered that the netfilter iptables module did not correcly handle fragmented packets. By sending specially crafted packets, a remote attacker could exploit this to bypass firewall rules. This has only be fixed for Ubuntu 6.10; the corresponding fix for Ubuntu 5.10 and 6.06 will follow soon. (CVE-2006-4572) Dmitriy Monakhov discovered an information leak in the __block_prepare_write() function. During error recovery, this function did not properly clear memory buffers which could allow local users to read portions of unlinked files. This only affects Ubuntu 5.10. (CVE-2006-4813) ADLab Venustech Info Ltd discovered that the ATM network driver referenced an already released pointer in some circumstances. By sending specially crafted packets to a host overATM, a remote attacker could exploit this to crash that host. This does not affect Ubuntu 6.10. (CVE-2006-4997) Matthias Andree discovered that the NFS locking management daemon (lockd) did not correctly handle mixing of 'lock' and 'nolock' option mounts on the same client. A remote attacker could exploit this to crash lockd and thus rendering the NFS imports inaccessible. This only affects Ubuntu 5.10. (CVE-2006-5158) The task switching code did not save and restore EFLAGS of processes. By starting a specially crafted executable, a local attacker could exploit this to eventually crash many other running processes. This does not affect Ubuntu 6.10. (CVE-2006-5173) James Morris discovered that the ip6fl_get_n() function incorrectly handled flow labels. A local attacker could exploit this to crash the kernel. (CVE-2006-5619) Fabio Massimo Di Nitto discovered that the sys_get_robust_list and sys_set_robust_list system calls lacked proper lock handling on the powerpc platform. A local attacker could exploit this to create unkillable processes, drain all available CPU/memory, and render the machine unrebootable. This only affects Ubuntu 6.10. (CVE-2006-5648) Fabio Massimo Di Nitto discovered a flaw in the alignment check exception handling on the powerpc platform. A local attacker could exploit this to cause a kernel panic and crash the machine. (CVE-2006-5649) Certain corrupted squashfs file system images caused a memory allocation to be freed twice. By mounting a specially crafted squashfs file system, a local attacker could exploit this to crash the kernel. This does not affect Ubuntu 5.10. (CVE-2006-5701) An integer overflow was found in the get_fdb_entries() function of the network bridging code. By executing a specially crafted ioctl, a local attacker could exploit this to execute arbitrary code with root privileges. (CVE-2006-5751) Updated packages for Ubuntu 5.10: Source archives: Size/MD5: 7996670 cf5dc02fae9611e53769692ddd61a6bd Size/MD5: 2514 82225edd474b2a973467b5acadfc18d0 Size/MD5: 47177098 9272115d4005d4e9773a1a6170fd20cd Architecture independent packages: Size/MD5: 4556332 c2891f73150dcabb22eceb5315eed3a5 Size/MD5: 40453572 e3657bf359717809fc78706dce699344 Size/MD5: 377892 fab046e194f4b015996144915e6186b8 amd64 architecture (Athlon64, Opteron, EM64T Xeon) Size/MD5: 20802 174391691d37bae2751deb0d03c0e313 Size/MD5: 45614 47861cc882767de5acb7b0833205637f Size/MD5: 2316 1149916d1c4d9b374f08bc7b554c8787 Size/MD5: 88802 f0db5e0807f30e0dedd9a46eea8842dc Size/MD5: 35150 d1b02ba6cd4eddd2fc183135081bb779 Size/MD5: 42374 7cfb720b2e412b5221f72f96c9c2ae7b Size/MD5: 70526 e00f96b7c9d28445b540b64a9ea3456c Size/MD5: 5742 48f939490c8fe5b6f71f8166999ac7de Size/MD5: 34336 fa5547ddbe8877ad3bc71d5d321c5ffe Size/MD5: 53484 1e882eb6c13cc5eed9964b61d3a23510 Size/MD5: 129586 6ba5d2c7754359460517213b5a67af96 Size/MD5: 43844 503a32d844501f4fd8db2ba3a886dd12 Size/MD5: 115022 9ad4091ed18b76574240682cc8752a7a Size/MD5: 253676 74ea601344bec59d421703defc457aba Size/MD5: 83362 dff6f4dab7bfabc2d024f8549b2fae2f Size/MD5: 1497908 bfe8a817b54e0db128d4f31ddcfd30d2 Size/MD5: 805594 764a68c019e26e02724d542e9f91d15f Size/MD5: 803248 fce377f28d17f09cc16b4b878be1e14d Size/MD5: 804276 07f6a77e0366a2a19e014bed1d8d84c9 Size/MD5: 800548 ca59f8ae10209a8c590981389f896aff Size/MD5: 5920912 9119fada50e947315ddf112a85b00e88 Size/MD5: 17089626 f6efc5e1d11ce8361e55573e8c2cc723 Size/MD5: 18130130 4bb5c0dbd6c875fc9a51c92909a5b531 Size/MD5: 17954466 4115f168870a86221e0b2f1e4192d569 Size/MD5: 17898598 a1edca1979d46e27d14310629e8ac826 Size/MD5: 3518982 5aa804ecb3953a92826a3870c7fa1a53 Size/MD5: 14298 0dba0da149b08fdf537bf6f039d9c482 Size/MD5: 191796 eb28692ea3dd42451bbe285d1924fc62 Size/MD5: 170370 6366fd51f949ac22bbedb5513342f063 Size/MD5: 1048480 7daad4617b59d60e0d76c90a17be398e Size/MD5: 1147240 8dfc2daa00ffd29d53050b8dff3f1ba1 Size/MD5: 122450 7235be1f909b8da51e21106479fa7dd0 Size/MD5: 8540 4fccc8ddbe42613187af04ceba1d6fdb Size/MD5: 99022 5e3bb61250dad10be385a3e390a04fd8 Size/MD5: 44950 296b05542345bcb0815f3f66faa7a95c Size/MD5: 31658 9563e7efd932530ac290d2e98420b782 Size/MD5: 65704 4d35a7b40f33cf9c368056303cef71f5 Size/MD5: 4474 1c5719b4c2fe8e94fd6b69c7ccc6ad08 Size/MD5: 7878 946e51582bd50d1e06ede4f5c58d7dbb Size/MD5: 53862 ead873e96f96f5b39ee3adc6696b3a14 Size/MD5: 107330 162466819ae26843dee70d4c716dbe45 Size/MD5: 9882 ccd4c123413006f543a63ef0f5d78c74 Size/MD5: 69766 ec3408b56b83728724978e2b99707af4 Size/MD5: 73066 948b6196ee5b32d9ccced7d16a0973bc Size/MD5: 1271102 94a10f4df65e9d192579671dd0c08721 Size/MD5: 58386 7e844a8708af648bdc78f48247400241 Size/MD5: 22208 2df7f3b906c3d85e219b648e09fa1e12 Size/MD5: 29362 6ca1aca586a7ea76f9c353656836c9e7 Size/MD5: 62192 a8d5f8a183732aa70377f7aa3f90bc4f Size/MD5: 34968 fd9441cc6dc544df6685c11f89c4b55b Size/MD5: 248874 a9d78af942387dc2a34f487fc39a7641 i386 architecture (x86 compatible Intel/AMD) Size/MD5: 18670 282faedaba32a8614d28fcf6ceeb51a2 Size/MD5: 43952 a83dab8b68a58acb55333b49e32c18df Size/MD5: 96876 e2fd9197888379f145fddca447799e74 Size/MD5: 2282 361c7f3c5587952c6b97b40ed10ec1b9 Size/MD5: 83696 c6dcdef5512706f4152cd6349b26b451 Size/MD5: 33138 89c8c6005a0ab14e866b085b934da299 Size/MD5: 419221cd10cefd4c3ce0b872e0f42b81305c5 Size/MD5: 68224 4043ff633a6c4100ec01ff6c44af510a Size/MD5: 5364 f7ab5aef70d78d149bfc76b96442a43d Size/MD5: 31130 a0772d958779b578f392fdcf977b15ea Size/MD5: 51414 1a5e00a82029c1cfdb21205ded7c86f3 Size/MD5: 123404 03657641ce80dd8562628f58f578957d Size/MD5: 42476 82ee5104fb6032f3d75ce67e5ce1c302 Size/MD5: 110272 3149f7469c13b148c41a264a69713f1c Size/MD5: 239810 cac617491285b498c4e93aeb1a5f7882 Size/MD5: 86178 63f4e48d04aca8dde6a2af41c8f9a528 Size/MD5: 1417982 dadb3d982841b1729d3cdf60deabb432 Size/MD5: 803632 5707cfb421bf6d31a6f9fb5817e439c1 Size/MD5: 798802 ecc08d47f86d5ec2618140e2f4574219 Size/MD5: 800820 65596dae3db2c89a03f4015568236705 Size/MD5: 799018 7a810a489e2b4f56838ec4fe60ada408 Size/MD5: 801354 f128651288da2445944fbcbbc17d6446 Size/MD5: 5930424 3dcb88ab6d0288128d58a1597237aca5 Size/MD5: 18025902 9b5fc7e072b6457c9b3a081526610209 Size/MD5: 19370088 7b4c84d1ede12aaceccd89d023a89f91 Size/MD5: 19463586 c7e21ceefb50104105d9cc44a7be9344 Size/MD5: 19501644 60d0e68a8d2767ea911b755e992c407c Size/MD5: 19546962 813e43078c3a2f56ebaf749c45ca4a8f Size/MD5: 3519684 55b033208533519d8b44962bf32db5ed Size/MD5: 14530 1e59ff286d1a8675978c3c5803a84a66 Size/MD5: 194788 57e029eb40bb7a743483c0df280cbc26 Size/MD5: 166500 9d81e66b6eb7ec5030e1efad41772cf3 Size/MD5: 1048168 1dcef3bb6fbe4b4e48519ee88c7a5a03 Size/MD5: 1341392 ada1fa6ff9bf9a9cc1d3715632a4d44b Size/MD5: 123676 a0cc7e3400eed26decc5df74e3db194f Size/MD5: 8250 35a1ba92feae731ef8afe242fcf56d69 Size/MD5: 93372 0323bc0bc906852ba6c678c316e34e0a Size/MD5: 46814 db4208f3413f9968dc4f942b48b044fc Size/MD5: 297686e7c97185950b008ede87100a717eb9a Size/MD5: 72280 0eeed896d2349953d2f1937f49d210d1 Size/MD5: 4258 b48aa8a9252206ec13eaf74b910c4175 Size/MD5: 7666 323faf7fa2356431b81bd4633445e8d6 Size/MD5: 50626 251d2e3de723c113692b5e7bd0e1f933 Size/MD5: 108634 54f9a84003ef543c95574b0ef460e284 Size/MD5: 9808 54bf9633868b60e146ff09e2ece72b4b Size/MD5: 67636 d44df0b1daa89215fa85c40f07cb97cc Size/MD5: 70184 b0f884bd9c492e663ae12b8545a36ebf Size/MD5: 1481088 9ed81df02f3a04cb8ee2f7395743b209 Size/MD5: 55202 0143f5689676182f087f801f513800be Size/MD5: 20362 1483cb6cbc61442dce50de06f3e6894f Size/MD5: 29912 b9c4b0c153497abbe0028cb3994dd0cf Size/MD5: 111226 05385697b9f48fb3d742322e6a8378d8 Size/MD5: 34560 e6e90bebc9acf221c8e079b0862d228f Size/MD5: 263266 f639bfe47a019430017f5f95e1d50b85 powerpc architecture (Apple Macintosh G3/G4/G5) Size/MD5: 23364 76c3c97c742c343b10a27a758d648408 Size/MD5: 26344 d4220aca0911a33b685d26391396b020 Size/MD5: 55914 94d68c3c18faaac1d0819d5f06cbf5af Size/MD5: 58832 af2860be50f5c32ae28a4f5bf5a8937b Size/MD5: 2316 f648e7945d7768d69ac0bde9d4a02c46 Size/MD5: 2500 2df357eca3be75a13901ff57fb07e39f Size/MD5: 29752 3787fee334598533027558d35a7018e2 Size/MD5: 34718 1fb9c93c4d3f335297662b09b8d51ef9 Size/MD5: 104760 c7a01d4722d1a3cf5f0f9bddb94f6b91 Size/MD5: 122256 5e053768b21eaf23041593545636da6f Size/MD5: 40502 ecbc94bbdb0e5573de240b5b8c28d9a7 Size/MD5: 45902 891cd2a3d99d86a28fdb8fb16c95d721 Size/MD5: 28998 58ddde0654dff26c036115ff2e8e7911 Size/MD5: 29928 58172cbb2a970f9cf3114295249e4e11 Size/MD5: 210094 dbe0186e17be3e9a9b942e7df84797fb Size/MD5: 224764 7d76ea5f2772fe0b9011cca9cc008236 Size/MD5: 6148 80319e7ec978ffa2c23a3a5924cdd2d9 Size/MD5: 6962 6f76b3815a5ed33c2d01206468e8d025 Size/MD5: 45170 f0ce31f56e36814bf2621a8539f7e206 Size/MD5: 40416 beeb8dac63e20f27fd29604945e95022 Size/MD5: 9796 38ed197302ae72dedac6ffe0076e2b36 Size/MD5: 11784 e350d629a0e2df5607ad30623677eb11 Size/MD5: 76786 32b9997b4389612e70d8abb615933a67 Size/MD5: 85190 60a9cde45e8c6c6a2f71672dabc0ab30 Size/MD5: 112162 5e408f7fb037f13a4080a5d883e7da3a Size/MD5: 129212 841714ec80c4f95fdbb166145e5c2111 Size/MD5: 76738 b10d37852e1cb4b676a14c5330e8c4de Size/MD5: 90404 6859c35ecdddb5a02eb875f0ee4944aa Size/MD5: 140764 a63b2913bc19c70f4fa6c971c710a2e1 Size/MD5: 157280 e7b26734e954ec468f2ecffdb919fbe9 Size/MD5: 306084 0e43dc46766d5d4b1c83c91a64bd18e4 Size/MD5: 210710 7210d3294ecc74f50f3e99a584107cf2 Size/MD5: 110776 a862c670285c035f7db03580ee6bf252 Size/MD5: 116646 b27dc678b3f6a6a32e2c463769d8bc83 Size/MD5: 1976696 0f5ebd2a50742cbeb698e4b50220ea6f Size/MD5: 2350414 6b9defce9adb73c0c62ecc5f34d03fdc Size/MD5: 774796 55a279c378f508cf031bddbc3990499f Size/MD5: 783382 f504ef42567eacf57f7388be07550a4a Size/MD5: 801448 88e982ec1a3469fa2cd323682c4a7f30 Size/MD5: 784026 8b01e7d36109a54ede6262bf6cec1f0d Size/MD5: 5938238 51b02a2066d423cd2321039050bc357b Size/MD5: 19522244 d8ed62188372a0d097de9bae961359f2 Size/MD5: 18359288 9171f6637d4a52c2e46ea2cc388c5659 Size/MD5: 21187336 1c994790a67a8bf8c169c99a62982691 Size/MD5: 18009416 fed4bfa6f231016f066f051d49e18933 Size/MD5: 3518596 07c19c15ebf870ba1b4da43b26461e19 Size/MD5: 17620 b9ba54c639f99708da112eca942cfc68 Size/MD5: 17788 1a0350f5954b45475e7d0712e3a87e8e Size/MD5: 234110e20d6bc1b328def1f09c98d423ee3077 Size/MD5: 258846 60410b6a21014f9ca1cc3e3c208094b1 Size/MD5: 208856 24e12cf0ff53032c7e17ac1d4ace102b Size/MD5: 235398 59adee1cecaf86e47e714ea9308489f9 Size/MD5: 1048296 b2fc57909c8dbdb6d271acbe75557bc2 Size/MD5: 1048426 e614d2f04fe09252ebcd35839b8f945a Size/MD5: 1458024 1bd1f7538c2bbf3dad1f908b649ff585 Size/MD5: 1622966 cad7d64e06df2f5dc41decdb09695834 Size/MD5: 212826 30308ebec5613b5c4972b27b58a21c1c Size/MD5: 197962 d05b7cc803808d4e29af704a283e9537 Size/MD5: 9462 feb939110d24e8e4d7091c6753a7d9e2 Size/MD5: 9058 06d11bb32a022d64aa92ad637fb5b43a Size/MD5: 115322 8d1915a0b5314485bee9d84c17788f3f Size/MD5: 134442 1b5bf2fac0bfb53bc1dd7181c4fd1c30 Size/MD5: 77022 a9ae87cfd71fd6ed8e7b61f82fcf1b22 Size/MD5: 87530 9528e1429f7d88ba30c9a215be6a8be3 Size/MD5: 4816 887d270edb4f70607e73ff1117d5f5e8 Size/MD5: 5280 9e843aeca31a04cbe9e3e09aaead4f38 Size/MD5: 63048 9cd8895c5bbe6b5e6de784b1d41287da Size/MD5: 75992 11644b9db6a4eba455dac2de343663bc Size/MD5: 128628 35f938c822f7a33e25481d05218f35e1 Size/MD5: 164352 8c5cb266390809dce0ae8103d78fd68b Size/MD5: 77430 85a1dbae6d9f3cda560c4878c9af9f6d Size/MD5: 98156 3dda8b3fa90f6462fc4627ae076a3865 Size/MD5: 85246 9209441293f7e084d93de2cd1951c6df Size/MD5: 92312 2c8579d9e520c3c12e52c921fc166524 Size/MD5: 1537908 165e00afd9d9b1a4376a932ab63f672c Size/MD5: 1755640 844f17dd690801658670bb0f7f648e91 Size/MD5: 65296 a915a1a194cca1d48a90acc65294015d Size/MD5: 100432 281c6be595cd2842135a6aabe973ccef Size/MD5: 22880 8bc2dcc7dfebe2144d66932947f75ed2 Size/MD5: 28598 89ba780bebb63ed0621233cce28be199 Size/MD5: 354963071a31da4ab4a851be785abad9c7dc6 Size/MD5: 39802 de1995b80f0c6cd5f181755b2b10af74 Size/MD5: 139894 5d6d8e72213a0d9156b05551d624a46c Size/MD5: 152634 69e447701a3797e0ee7efadd5f18eb2b Size/MD5: 40962 c933c561451b9257002ba5f2f5df7953 Size/MD5: 44416 a05e3c9cfedf4e96691b54db60cb7790 Size/MD5: 296168 e19aeb64469013823775df6dd1d85f03 Size/MD5: 324188 cadd21ca1e903b1b3387d73cb33b9adb Updated packages for Ubuntu 6.06 LTS: Source archives: Size/MD5: 2820879 09660e70a803e2855bf530b6442c4cb6 Size/MD5: 2379 7e273768e8019267d38c6df771731a7e Size/MD5: 57403387 88ab0747cb8c2ceed662e0fd1b27d81d Architecture independent packages: Size/MD5: 5162076 27eecbf0895dacb7c745a0d026452119 Size/MD5: 89952 3ef8c5bf5f29bc963a5cbd74150bdd92 Size/MD5: 44720704 f6fa38a806ac461615ca01fa875c5519 amd64 architecture (Athlon64, Opteron, EM64T Xeon) Size/MD5: 22350 24c545bf8d51935b41699746541f85a3 Size/MD5: 44772 e9eb0d67c0a25f89e14eb6a0cff430b4 Size/MD5: 2306 7068ed387b243889018d41654eb85aef Size/MD5: 36196 9c684d21601c04666d92224b5ceff7fc Size/MD5: 102188 96f282b553716c805cf80f3e3b24c69e Size/MD5: 38606 306ffa271d3e5fdf37f501aa22bf4ead Size/MD5: 49136 f02a101e95e5672610014a7d3f2d1e27 Size/MD5: 176702 0e55b12c8975532f42516467f84270b9 Size/MD5: 36770 848aa573a204ee47c7304446bf20fbb6 Size/MD5: 142250 14b3bfc3d0786cdbb8d8d407ba7eae5f Size/MD5: 51042 500d4d33e88e56860c1c411e966150ab Size/MD5: 140430 062254845eb065c5a79b88073f5d3c4d Size/MD5: 286904 6e2f211b94cf82bd412d31a0c3733bed Size/MD5: 97800 91d76b51826f200ff292811df02cbe7c Size/MD5: 1650466 78683905b1b7224ecf973e77ff1fe02a Size/MD5: 864826 54e98eb67cb199e9046e50dc710278d3 Size/MD5: 866254 fe69e288e4c8ff21e2c3925e4522cd84 Size/MD5: 865030 002eeae63687f45ffd11dcd3f34c3888 Size/MD5: 865438 669e65aa841d8f313c208f8935179bf2 Size/MD5: 6913802 b2855877c3575445b2c7ee22f184bf97 Size/MD5: 20800358 c98ed2fa0b623ed58220be9c82e405a7 Size/MD5: 20773872 a2ad2de8c27f55488854c655ee976d84 Size/MD5: 21616544 493754b9dfcff31960c88b77e3d083ff Size/MD5: 19883316 b1f41da64ec33729040197d2e85b904b Size/MD5: 15630 5afe9a33be3a8bce8ecf303325cacb49 Size/MD5: 240272 3d0692cae7c6458ee1e6348bb234566d Size/MD5: 202554 5d340d6b0b901e722e3320203d0d4639 Size/MD5: 1048602 732519ed2e13b5cf8d9ee9ba89568293 Size/MD5: 1486544 44ff377056e6051e7d331ddedf0f4740 Size/MD5: 161640 30fbb6b1e4a081a0c9373262a47d253f Size/MD5: 9834 fe87d913cef4e342c97819896072845a Size/MD5: 80856 79ec0d5f69efa6a8fa9feff56ce3ab89 Size/MD5: 49170 de1bfe8a231051f2a6c554b5b03d871e Size/MD5: 35158 2927d2931dd2ce9a1add8f94f00e5d15 Size/MD5: 70864 44461b5376d2f413d0ccb42d8b58fa5d Size/MD5: 6218 ded9e538af21041d8beb4b2c2325adf6 Size/MD5: 9062 50696aa643d0646559689903dd646698 Size/MD5: 57882 acd510db73bddce854796798042d9a41 Size/MD5: 123328 b622d42a9557c3318c97783c2c70c894 Size/MD5: 100894 d3634feb25644d3d12b4e1d362349593 Size/MD5: 79198 1c705c87ba6d5a7d2cc7011288da8a26 Size/MD5: 1594660 90d5a29f12f9863330c9de215d8b66ec Size/MD5: 72278 ef6fab677ef518811fb4394851731b06 Size/MD5: 12646 cdf433cade001f522e90ee81ff0b35e3 Size/MD5: 33736 196a30215cfc97c8f86ccaff97770559 Size/MD5: 138176 d5d73f5cc912242b8e27433f9857e04d Size/MD5: 38926 4cbf4b32203c8edc7933e6a68e7fa5f6 Size/MD5: 278740 f01dc12bc2c3dc6c3de9c89c798bfcca i386 architecture (x86 compatible Intel/AMD) Size/MD5: 18966 ed5608f8063680b75a4114be201be842 Size/MD5: 43448 eb15061625c7ca657220974abae0952e Size/MD5: 105192 0564811468a30691bacf4b8ef7a323a5 Size/MD5: 2284 1213e558c24eb51ca8d854a889a64f7d Size/MD5: 34480 eee8c354ac83fb0ba6e171cfad1f4b87 Size/MD5: 96890 eab9af485fe3fc7de1da8bf560cc9ee0 Size/MD5: 37068 e8c5d1d3285c5288fee296570806f9f7 Size/MD5: 44070 1a22d8d0b861e72419b841d66fd1d3ed Size/MD5: 167746 61195b84e884cde33a337085cfab653a Size/MD5: 33924 a73dc9f475aec52115a04c227da12b2f Size/MD5: 137848 f9c351d4dd38683b62fcbfa52ab8294e Size/MD5: 46884 d2f76d29041a97f55978103956d87806 Size/MD5: 132766 1be5188da07599405a178984ca54e9d9 Size/MD5: 273446 f260ce18eece1daa98fae1f97f7b29a9 Size/MD5: 102256 48fec137ec6cbac1da005b85206bfee1 Size/MD5: 1594894 47f4b4ba19c5b5cc997cfc7145e733df Size/MD5: 853514 123881b9fed8eb5771d047d81399a2b3 Size/MD5: 854464 8e649b58198f7ee316111926f962a314 Size/MD5: 857936 cc5e77d38a4a9ca78bac25438635846c Size/MD5: 858762 eb4180b80194d9fd37eed53b02f0725f Size/MD5: 856564 5aa0d1b48a79d614d80790f5366df345 Size/MD5: 6906130 089869cbf595de473b87dbb5e8d4a73b Size/MD5: 21702738 8fbb499a10a2fc20dc0c141d876e9a01 Size/MD5: 22501130 b2ad4cb294c08ca640ac33a67967c86a Size/MD5: 22240466 d4bf005d6a20426d565869f919a47e7a Size/MD5: 23599228 d9ff8f0b5e4ccc57321fa6e49dfdc18f Size/MD5: 23159788 5c899c59cf1377b1efc0f746f0c0819a Size/MD5: 15498 c384b39a8351cc1795d16a59d5df15f5 Size/MD5: 238438 5546d8231098aa48c419d40193d4e39b Size/MD5: 196968 45bd48cd83d5480d97c2555c8919d2cc Size/MD5: 1048380 a686d106981adc09c36ef38dd7be8dc2 Size/MD5: 1684954 23918a98198901f5d76e370922d7e7f0 Size/MD5: 1608061e2341a274616140b7439553067a6db2 Size/MD5: 9162 82bd0a6bbc11c56d3f153b28345af1a7 Size/MD5: 76482 00cda7063f9a9c391cff47cd72b91d8f Size/MD5: 53254 7af0469ab64af78952f4381371583785 Size/MD5: 33046 8744f9c0f1e84103a7ae79b69e6815c8 Size/MD5: 85618 e97388b7996ec9ff1be200cdcceae835 Size/MD5: 6026 16e5ffe2f725bb08556eff48e9aca3cd Size/MD5: 8754 61e5566ea1f56e56103d5d8a96ba5882 Size/MD5: 53594 87e89146f07661c0ee79598ed8697db2 Size/MD5: 130772 78d083d0d4d748c5e1bb6a2bfc511c84 Size/MD5: 98406 abae347020e9123c799e7dce2028dc5c Size/MD5: 77120 719d5e7f8059f7708beab4a517548626 Size/MD5: 1768336 3e25df5b0f94de0b9170c801ce1805dd Size/MD5: 69556 30e1f956e9c7a0ba6548098bcaffa15f Size/MD5: 11758 01b486959d322fcc19a688e7ca22cb54 Size/MD5: 36000 8357fad67a71cd332aea824da5f00f01 Size/MD5: 132390 e541ce2920c6535f15d0eacaa5534f3a Size/MD5: 38550 c163f745cca8fa74eae544de735d6e05 Size/MD5: 299116 ae1d731164cf08bd714a223ad1f53041 powerpc architecture (Apple Macintosh G3/G4/G5) Size/MD5: 23726 273c34e19ddb5a8cfa947f9ba62457e9 Size/MD5: 25946 533cd429ab323ab2c566a0dbc2acba7e Size/MD5: 49310 dfce2ce1ffcc89915d47cb2d644399b0 Size/MD5: 51520 6ad0298f6f88a14d6ae20b037e4d5c00 Size/MD5: 2298 d9a89fe81f2fb3877c306c6427858143 Size/MD5: 2476 6028eae8edbf9a1c7ec1bc3f826b6952 Size/MD5: 40116 6dd4f4170538df3beacc217133c2ef13 Size/MD5: 43690 8d05aa1b83b520bc4fc92c86e4d7d81c Size/MD5: 112438 7c8d90f7f7c1699df11443878e15b557 Size/MD5: 120554 16002bb6309d150bab30a68d7c56fd6f Size/MD5: 40844 39a1b2475d99cce75de7dc971142d820 Size/MD5: 45350 2a0479eb31df200f55beafc089caa134 Size/MD5: 29024 45ec6c460194ec14b797569a7d4c6fd1 Size/MD5: 29894 47319448edb4541638e2efd91c2ef49c Size/MD5: 211400 497682ed625166a7ad33a068038384c9 Size/MD5: 225202 eb40f1f1d7ee6067f29b319bf1b55341 Size/MD5: 45044 fb7a2654367b5135d43a97f2375851e3 Size/MD5: 40212 8454619c57ca7f7207dcfe889f419a4e Size/MD5: 1930 327b7c24674cb5581fb35d6bfd406972 Size/MD5: 2196 b7aabd2bd7bd360b1a12066bde2d8715 Size/MD5: 80590 16acbc783146781700415899fba73b7d Size/MD5: 85954 c393beaadb3394be6b0bde848b5c0d13 Size/MD5: 111624 93866a7a75057a55c8526c30eca04503 Size/MD5: 125786 8bc6dc24a7919a5cadfb2a533131e2bf Size/MD5: 53400 81cdd2ed35f24d331337317f1661ef42 Size/MD5: 58476 3ab28125c0a6a24ee2043611728be340 Size/MD5: 147658 d3cf85fea071f15c87db19aefe5b2e1f Size/MD5: 161476 082e9648ed16f0293c7ef5a980f5eda5 Size/MD5: 317486 b7af9812c72aaca090bc9f6b1462506d Size/MD5: 287588 6124c7921f13db38b8061c72c996d721 Size/MD5: 115854 5b5e78e5beeeec821d50439eb2ba6b7e Size/MD5: 116522 2a7f9ebb6d29b4cf85375ecda19f6cf8 Size/MD5: 1922628 b6e8bef92a96cfeb84e7200379c5aca3 Size/MD5: 2434740 856423e38d3ba01a8048aa40a0783990 Size/MD5: 868418 73f4f0f33d0563aa8374157c6b518b63 Size/MD5: 864416 160c7b728f00dc53d5867b9f3be72b99 Size/MD5: 867794 58675c90db07ee7e07e2b1cbb2b08aa9 Size/MD5: 6937688 736f6e48ac4bc67335b4d63a66f3e797 Size/MD5: 22765592 4fa7f842862fe5745cc759cf5d053262 Size/MD5: 23653510 560eba298754728c951558c03ea6be50 Size/MD5: 22343254 2e9c1d26cb4315d9662acbb94f923757 Size/MD5: 17780 42300cdeeacc155524611e1d24a65f2d Size/MD5: 17378 090201b8323b0d8c03553631485b4d23 Size/MD5: 261150 ac62e2b229020cc6cd7098036ccf0f54 Size/MD5: 282366 575cb281d78c9f123b43692ee64dc56a Size/MD5: 227454767086fa7e5a958f0f580155a79d2b35 Size/MD5: 248674 77f2377ecbf08f7320d53a8065d138a8 Size/MD5: 1048448 5442d85fa81de4a9e5b64e73ef18c668 Size/MD5: 1048590 4c3b22ebaabaae638d657100d1174eaa Size/MD5: 1673690 013ba3d9cf3d92be9985e4d3d2d49f57 Size/MD5: 1808870 bb8eb891e683c5101e36b8250e284123 Size/MD5: 250938 37924f32b6cd4b2c228d18ee367dbbd4 Size/MD5: 233674 6b72164a9072487291cd51994ace4e32 Size/MD5: 13030 9eaed29079c64e0f25e11e7133e99ca8 Size/MD5: 13524 2f1baefc32a987c828735ca81a5148a8 Size/MD5: 84834 5358cb05855533fe014815c521970ba5 Size/MD5: 52190 2f80eb6c45f7cfe60683853aec218406 Size/MD5: 73930 33e53c929b8e2d2fa33f9b5d742d7d4f Size/MD5: 85846 e0fe7aadc3a97555fa12d7d557179a15 Size/MD5: 6612 291398f435c800e0552daf2998bf45aa Size/MD5: 7062 7f2a2c91398b8b8050430ad5d2a8fdea Size/MD5: 60356 871f13193a07e5e23534588bfa6c5c44 Size/MD5: 70344 bbbccd91d80174d0e4e450b9c2f9906a Size/MD5: 128540 d3c9695542baf821a0f44c5eed501218 Size/MD5: 157796 ea196b9fb8966e54c17bcef60048f5ae Size/MD5: 107932 c31372441d640514d633e1cb4db26261 Size/MD5: 125996 131d811e5a17054e0c23d2fc9f1c14ef Size/MD5: 87250 032be0df0c0520305ea5254ee02d391a Size/MD5: 93266 f88e14fbf4270916eadfa4026f42e373 Size/MD5: 2013960 86947d67259b7f62767ec1b3e212dc0c Size/MD5: 1988028 970cd73af7f10575a702d145ec69b1a1 Size/MD5: 104112 e2077b3576f7cda45a1b16f7156d3682 Size/MD5: 115702 df91fba7857d188a75bac18b7304f594 Size/MD5: 12740 1516420eb578e0578846ee1df9aa3a65 Size/MD5: 14436 2544f6fd0be61545be0a8dad1fa7235e Size/MD5: 39952 345cbf3d4b585e10fee8140754c2345b Size/MD5: 41468 18b1f0231471598c82cc4cf02db82370 Size/MD5: 14910041aed0931aa8d5b2985daf56c7810deb Size/MD5: 167802 ede60fe786e29b78f7057a2b92f9b19b Size/MD5: 42270 f99f3fa4f894a92ce8708472da1028a1 Size/MD5: 44866 8244061d9d239cff6eab029784526981 Size/MD5: 320282 27cc215d864a6b942a5c48217db37b2e Size/MD5: 324714 0a4bc3c821b1237fdd1ba536fb97db3c sparc architecture (Sun SPARC/UltraSPARC) Size/MD5: 50460 fc558d41fa6ab98bcac4e2a22621d70e Size/MD5: 2356 5543352dc8582676beb493df0a3f717d Size/MD5: 40242 8b4a35539104438178b1baec2f434ce9 Size/MD5: 110438 49c7267a9bba583602fc768ac02cdaf8 Size/MD5: 40728 c4249040642373c62706d1d6faf119bd Size/MD5: 104234 4bb5b5175feb607435eba115463f890d Size/MD5: 7436 deda07ddbc1b0f8762314297a612c37d Size/MD5: 148810 d9cf3d3fcb7fc997f6b9ed62a8792553 Size/MD5: 1707218 ade3536f29fa5d3b5330aa9400bda504 Size/MD5: 766056 4d721072e4198e9525cb8d2482baae56 Size/MD5: 765028 5b72c0aa55a53b5c816b5087dbcdc1df Size/MD5: 6951130 1f9b65c3cfdafdbeab3b838304ac9551 Size/MD5: 14997088 44d34e4f5b0325b021bcf9ee76ac7e78 Size/MD5: 14812084 de5658777fb8370651a8f7696c0ce24d Size/MD5: 7422 d58ca2513f3ac089d3bd3a41853230eb Size/MD5: 248506 d82b7a39e7ef205312aee16bbf33be78 Size/MD5: 212268 8998deff4164c5ffea8e42a66206d83f Size/MD5: 1048466 bbcf990a0b9fe9cd793a3d6770eadeee Size/MD5: 1421590 439951134944d9492e6f863ec660b4be Size/MD5: 10110 c1f718a3500a1bb23292111c6d700c29 Size/MD5: 40180 43e3ebb6781191bc7322aa673381345a Size/MD5: 9360 398ee0063de2b3b75566fc6f823bc83d Size/MD5: 61430 46e6821a25874cf5f166479c7a280388 Size/MD5: 163004 1d4aba9731615d37906e679634689976 Size/MD5: 63930 d9f858a3eee13601059fd180ada7e5c8 Size/MD5: 1235014 c2e28607b62b802e7c0f765146ee865f Size/MD5: 59358 26c834cb8727cc9c9b2aa672a9ad29c7 Size/MD5: 37398 64db7cf6f0e4c790cfea0141157957f1 Size/MD5: 280074 313cbda5c5aadff81a23ff3502d30830 Updated packages for Ubuntu 6.10: Source archives: Size/MD5: 2139936 21d70e4a166eff19397917311900a9da Size/MD5: 2321 a0281329886491604425c136a5ffc9e9 Size/MD5: 59339565 2e5451201e38e865cbc7b0717fa124a1 Architecture independent packages: Size/MD5: 4505336 f0ecd77fc81e008ec925b1b6ab8a5e6f Size/MD5: 1096202 abf30466a458b293e344e557b8f7d089 Size/MD5: 46081322 872d7415b415f315b607dcfae7709b22 amd64 architecture (Athlon64, Opteron, EM64T Xeon) Size/MD5: 28610 e448302cfef12693a3086e0c48501d0d Size/MD5: 50490 de890fd0c43d081b1b19cd4322ac366f Size/MD5: 2446 4717d341dd43798fd5bccbc0ea7210ad Size/MD5: 40732 86a9918852286071ec5ede8278236a81 Size/MD5: 113430 e840a49b20328625f3c23ee2e304614c Size/MD5: 43640 5fc124f4d14d58504a1a5fbe5c49db94 Size/MD5: 54024 fb978937130fa53cf65ba753b53f00c1 Size/MD5: 189524 c322470b38782177dd04594cf4cf0629 Size/MD5: 40026 5c7d62e36535c69cd94ded063a3ad07d Size/MD5: 167746 a0682c9920cf20648e9103b548ce5590 Size/MD5: 60444 714010ced1919028330b3855c0efe1d0 Size/MD5: 154444 c4dcaa68b92594197993abd00458211f Size/MD5: 314690 d4a076c38598332582b752fe8401332d Size/MD5: 105982 2661373b592fee0b106efd9923c8c2d8 Size/MD5: 1903422 720237830dd97033c4565765b13bf2de Size/MD5: 904248 a96cb082cf0c1969964570665be5cb61 Size/MD5: 911828 5bc709421e05d5e13ccbbe86218d7d61 Size/MD5: 7426374 5284a05a34fb9094108bd44bb2096e23 Size/MD5: 23866090 2e64699b7a8cc4b50ccf03e57e41610a Size/MD5: 24757484 c3720d1e108910be941886e7a7eb6d7e Size/MD5: 2337492 9be16967f3d59f19a97195b91e23b0aa Size/MD5: 2336234 8b563e34423e27f5478b19269bd71f25 Size/MD5: 1769862 a71cb98a7b9670cbb26447bca3b1d48d Size/MD5: 16786 3dfde1d0f22840fd7c8c0b92a0697dc0 Size/MD5: 279170 238ed7876768bd4e5060186bf30e1247 Size/MD5: 256920 2e068cdec7709057890b11e670fca7e6 Size/MD5: 1048488 42795594965faf168a919b87f4f9264b Size/MD5: 2103858 23a01b8e6d21eaf28a522d02bc4e7d3e Size/MD5: 164434 452611b5fb0749f326bc377d68b9ed35 Size/MD5: 10502 6e4f4e6c3e3c9f24504ac4d3c618bd23 Size/MD5: 93358 1ba446f3b8b750656979c51f0a8785bd Size/MD5: 52572 8728189f4d3adb7d14efddad30da1dae Size/MD5: 39814 5dd7145862f437818be5a82ef852aab8 Size/MD5: 79814 436babd26f19cf2215140f6146b0d24a Size/MD5: 6336 3f78dffca48ff8b0ecd8746124ac6cc2 Size/MD5: 9366 80a7f60284f095e2ece51584ef19cf9d Size/MD5: 62716 4b67a0b5190f8ea8618df7c4dc2b7081 Size/MD5: 138614 41c4279020abaa9c650777d67b28fb57 Size/MD5: 115654 4d7635b1295286c5abce3bfe63c7fd8a Size/MD5: 90606 f5b3a2167d5287401159a84db252cd41 Size/MD5: 1286184 ce67ddbc73afeda819fb71e77f3b51c5 Size/MD5: 80590 74a7f4312f98ce764fa9c758117c12e3 Size/MD5: 13478 35c7ba75d0ebf5c0c9a8c8ad155da259 Size/MD5: 76260 0cf13fb1a74726203878619c4e25ad3e Size/MD5: 36064 6432af2dda1af0e93e2e98c618dbc78e Size/MD5: 151816 cbffe2ed7df011968be6061d56a7dbeb Size/MD5: 53552 f0a3fa4a17e0d17dda78e5ece15e2de3 Size/MD5: 323424 179061e815cd273342eef552e707040c i386 architecture (x86 compatible Intel/AMD) Size/MD5: 21214 9c9c69488c55ba4cebd162c2c7f25880 Size/MD5: 23816 638e22fd9bde2c8a48952aa42034e1f8 Size/MD5: 43886 3b39b554ca45effb392a36cb3d613292 Size/MD5: 44476 761e97fe9ed608a5ec4d910a19fb9c39 Size/MD5: 104804d48a8674c175877e34dd72dd8b9f9b95 Size/MD5: 49414 7fbf0ec95f29a6791398a80d0a75b391 Size/MD5: 2366 5566383bc73d4eb40665c59a8e4e23d6 Size/MD5: 2388 eef320b2fe8ca4b24eff2dbe5c137015 Size/MD5: 35214 cbd58b4b0827dfe0a290c3656ccc764f Size/MD5: 36622 0c06dfc8b3abb00e1643337000b3d08c Size/MD5: 98128 54a0e653b32e6a953fcfc9e8e9268064 Size/MD5: 103388 d438eed9d0cc66407bf4117d2402a97d Size/MD5: 38466 6812aa2597aa4979260654eb2cc10f2b Size/MD5: 39230 66eccf9467cf0c6b321b12ad6b66b990 Size/MD5: 44268 6cd91b7ded749d9978ba2a762732cc56 Size/MD5: 44662 32f3c23d748c17276a079f1f30638b4f Size/MD5: 172758 642eed596c80636627635e9a0e00c4db Size/MD5: 175174 1042bb0e624f3879f7fca07a7aeeb396 Size/MD5: 33756 93906998ade3550a0f7be585c54681c3 Size/MD5: 34712 2a262eb409c639c2df60bb5d2e8b8ab3 Size/MD5: 140566 2a626811125318486f08cc22593a8092 Size/MD5: 143824 b66a66a374a49ae9858742e8ca3504ec Size/MD5: 51752 043c1824d5f4a5aebc9281dda3bf6caa Size/MD5: 53176 a0f81c4a9941fb3899cd64918c9bcc28 Size/MD5: 131478 23ac367eed768ce78fa431765f25e725 Size/MD5: 138922 610a6e3c4eea7cfea5f4caa40f14d85c Size/MD5: 288344 8b8b4a755303cb5df01deb073e98eb3a Size/MD5: 290684 c278cff6601ef229921ce87636b99a5d Size/MD5: 103540 1c390c445cf484e97d48ae85ba21d385 Size/MD5: 106728 4b81b22145919aa03e8f405d049a6556 Size/MD5: 1737360 d9ef0a9c0c20322713639cd09f2d8526 Size/MD5: 1802854 ed32db3f485cabda5793dec7c0ed39c4 Size/MD5: 919606 2e269ec669141505976076f3aa19a691 Size/MD5: 908746 ec2770850d4038d804419540d10a3663 Size/MD5: 909176 53aee73b705e84ca50ee0cc84114e357 Size/MD5: 915122 d8ce253ad0dcd09544b7ac30e00e0f0f Size/MD5: 74217442c8e74bffb73e6c76484fb7d46e97201 Size/MD5: 22849876 55806bf0f773b3deb38525a74eb03398 Size/MD5: 22983128 694622a2ffbec84d25d956c059577e88 Size/MD5: 24081168 da82c2550269af26474b3e1a9e09a0c1 Size/MD5: 23580646 094b6bdebb6dd732fdc144c875e78363 Size/MD5: 1959580 e5f893dda524cdded61636c09a258db6 Size/MD5: 2027344 64b3620068f3d1f50f35cd60b27d4494 Size/MD5: 2065094 f55bc559c69b2fb0c020197ab26b39b7 Size/MD5: 2027486 5d844abc4a39ddc694778a84aedf3e67 Size/MD5: 21529604 74dc7e2cd2c248a4c61066211ffcf82f Size/MD5: 1769870 d1b579e4018361369ee5fa8162af09cc Size/MD5: 15376 d27b5598819394550d9530619644230e Size/MD5: 15736 f832011c15a9222c308171bd5579e527 Size/MD5: 253318 e36a7794eb2fbcb050cc9a117ad55279 Size/MD5: 263870 70ff96d3691eb15534f4f488b412efb3 Size/MD5: 220366 b568a828271789e89c4ceea828e3a095 Size/MD5: 227606 1989f519d80e0ecef4ce0fc7dabeeceb Size/MD5: 1048406 bb24a0173d3d32214e002acd962e1167 Size/MD5: 1048488 86f75042f2d53c95e419ca27c9800406 Size/MD5: 2092412 055f9d88b1a1955946c96ab507321b35 Size/MD5: 2142958 d7e14dde3b92adf1c95485cdbdff7d82 Size/MD5: 156876 4ba2c65839a1770112c57a50fa63a63e Size/MD5: 152152 f83a16ab22cda042a2a300cce763741a Size/MD5: 9176 9c506c43a943269b90b9b14fd5dee98b Size/MD5: 9654 3807473bcd5fac1465a7f01d71eb591c Size/MD5: 79222 0235d29eafb5cfaaf290a960abc58911 Size/MD5: 81764 ac62f0fe92e3da7b41ed5e691ba96130 Size/MD5: 55088 46583483b69aad2e5754fbad359479c0 Size/MD5: 56732 b3d9657cb6ce54f81a3c12b3d669202f Size/MD5: 34486 24792c0abbc16c627eeb9baf969668d8 Size/MD5: 35410 0e4dc686ed089c3e78ecaec2cf7de396 Size/MD5: 85878 d8eef148990752d55f68dbab1fa85bb0 Size/MD5: 874363300c53167c4aa82d51acb7bba4f2e6d Size/MD5: 6084 690c5377e1ef02a6a3b7e6bc38676e66 Size/MD5: 6096 1f2bcc277c37a04d361c7856fda61499 Size/MD5: 8608 dd702178be97210524fa3e5fcd6c7a97 Size/MD5: 8900 d2c0840c89faea4cedec3e5b62c7afd7 Size/MD5: 52682 6d117fe9beab29dd9eb4f6043cef241d Size/MD5: 55112 707a723c8adae1cbbe98a2ad1ead1e17 Size/MD5: 129982 233eb2bb9b3b8e125239f95213048e20 Size/MD5: 132966 717e7a930553eff7f2b9c63eb48601e1 Size/MD5: 99834 4639c540bf63b1ad2fc745e4289d3e34 Size/MD5: 101152 7b18b4437d266a799b1a8d07a991294a Size/MD5: 79572 c8991b8f67f740874b48609fb3cd0941 Size/MD5: 80938 9c663ac53a2294a078e887d79f6fe6f1 Size/MD5: 1394964 2714ebe9a864024e73dacef0d30bfc06 Size/MD5: 1398130 a73ea27fe7f87e501e766739db88cb18 Size/MD5: 69150 02717af7ef1142329c4616911b19e124 Size/MD5: 71088 32cf7b2ee8bf193ba1076689793d2f8c Size/MD5: 11424 c2c62afd654e0181e53f357479356059 Size/MD5: 11980 3b5df7818a4786715e9cf213341f288a Size/MD5: 62482 b2ae5b073f7824073b8d68df9eef5314 Size/MD5: 63804 4c6245b5a0e083671008b41a8989d34f Size/MD5: 36008 80bab6539605c8e4c06056b84e8aa24b Size/MD5: 36520 f27383fde725fdb97d7dcdcab684cfcb Size/MD5: 127290 05f888c555f01fff6d800983cf673477 Size/MD5: 131328 f47f6d8bf0a40b34c60ce1f266786f02 Size/MD5: 46804 c7edde1dcfcb834aaf916abba8980cd1 Size/MD5: 47564 f672cd882f13e7507d33dded67921a3b Size/MD5: 311896 cfcca6f3ae1634cf3ca390c110766037 Size/MD5: 318712 a5e9486a1fcd7292f0660c6975f386a1 powerpc architecture (Apple Macintosh G3/G4/G5) Size/MD5: 23238 59bb5e8c465486eb97831254db942e82 Size/MD5: 26082 19e9e8505a0a88d6300cb145202691af Size/MD5: 48584 0b724c82b3713442f323605ae78fc287 Size/MD5: 52040 061a45c464bda94e615e767da57a74ce Size/MD5: 2326 a9803b9c1bf09e2f0b347918ca62f897 Size/MD5: 2516 bf7dc0c283765514dc6280ba402116ec Size/MD5: 39044 70d773706d31b1467e57feaa2b34bb9b Size/MD5: 43076 a62c49ab5b2cc3374b254005a5de2d83 Size/MD5: 111342 8acf46a6abf09315ab9774847a8111be Size/MD5: 122114 afb83848302cc04b28de9a0aa6178c0e Size/MD5: 40402 515c50d7d86ea437becf1820aadf4db8 Size/MD5: 46228 8685bacb3856ee7118865c3a8e199684 Size/MD5: 28064 06c555ed61f17ae8119fbb249d57b1b9 Size/MD5: 29046 dca6ab3b96b0958bb9bc37c6d026b162 Size/MD5: 209742 964c1be14e97da83097a9b4607d8deba Size/MD5: 225686 f7b9766d15b43c883e8fdedb4b7a6ef1 Size/MD5: 44594 1f9c480ef48b013337d08427f1421a48 Size/MD5: 40178 c96a59b3b44a29d3a9e734f3cf573c2f Size/MD5: 1958 273910d71cba3232778875b4679c7098 Size/MD5: 2236 22d4b1d93d8b5c35ce67234f53b9b556 Size/MD5: 79292 7b84311ec29452b346f4bbf37e0ecda6 Size/MD5: 86602 0bd6c05322189405239656c3ef825564 Size/MD5: 110266 30da63c0959dedc15e6e00e0b63d5d49 Size/MD5: 127804 70d06bd9987f42cd990cfbad43f29080 Size/MD5: 55678 c251ad6ccf5a6a69670b6c76a49e6630 Size/MD5: 61926 cc5d7b79fc65bed03efe6189c3cae248 Size/MD5: 140880 83d977a7a0482ac7f7908f4301f5a636 Size/MD5: 158442 1a4d160f911ebe9d49e7f1fae0a8c506 Size/MD5: 314588 be466a6c8a551d07629ee47a16ae9bcd Size/MD5: 289936 e6d6bce04dc24cf3a380564637e9d75c Size/MD5: 113202 ceb1057269bf8d33096d623d4901efad Size/MD5: 116434 744ed2b331fc438cc7eb8c401676a54f Size/MD5: 2051178 adfb46f6b65304452146e8dae682e04f Size/MD5: 2771432 2c12358b04aebe2e1c8af55a57a2f8a8 Size/MD5: 915144 fcb1543de3f9d2ae81deb9af4b88c9f7 Size/MD5: 9189824b9bc317f4950e5a78ca38885b5be24b Size/MD5: 912596 a997c73ab1a398e837a2e93602b51971 Size/MD5: 7441616 65ee7d71ce497cd0904ca264f3d030a9 Size/MD5: 23024092 3a5fc7cb0f65ccebc10e1fcaac9d267b Size/MD5: 24929130 488eeb4b2268ff2767e0050b578651df Size/MD5: 22724018 76b68195313f5af3f29312ec47f72e94 Size/MD5: 2041308 081e7b2111f6f280d5063f44cb7d0596 Size/MD5: 2588716 d4a0b259f7213c865d0ef1b96e94de44 Size/MD5: 1967180 2193e15e826069191a5abbc6ec7f93ad Size/MD5: 1728490 2adadec4a850196ecd180df2ea416417 Size/MD5: 17434 a4f49974ba32d71a6acc0fca4ba14ebf Size/MD5: 17364 5a2112800e558486023588a0cf0e63f1 Size/MD5: 258078 aaab484e9f429fd16d7b96c82488e8d0 Size/MD5: 297928 96a26eccf8747acf966fbb9533dd3c33 Size/MD5: 239038 cb9a31c4e8e27c8e8913b1d291f7a20c Size/MD5: 266536 12501b74c4f9ecb96e993661f826934b Size/MD5: 1048436 93eec030eaf70eaaf7473326ffec02e9 Size/MD5: 1048614 f11ba322edc19a7fd54f4896669efa83 Size/MD5: 2098446 98580a49283cb6f97c05ef5869a6da0c Size/MD5: 2331964 8fc12717271529fe4b03f5e248d1c59f Size/MD5: 233866 f15a886e1898923fb534b4c1cc227ba7 Size/MD5: 214708 5b08264c5654d488c47297a4ca329f1a Size/MD5: 12702 7707f8821e91fe9400954519f7aaf965 Size/MD5: 13316 baf58b173ccd83daa99749aea99f4408 Size/MD5: 83236 5a06f44dc0806a0fb67a93c68b421bc6 Size/MD5: 97172 e35bd01bf40e88cc464c79a76d36ad3e Size/MD5: 71170 b210a0baeab68e23c879aacaabef2082 Size/MD5: 84204 1ff129ad7b6736d2fd60601febfecf42 Size/MD5: 6348 d3d8ff801a45d51f316436a53c4afbca Size/MD5: 6890 f3c31e5c8d714a859ac3b74f000ddc92 Size/MD5: 57008 d512b07ac243253853744e8e96147151 Size/MD5: 69208 7d92f7fd597d8b1348df7dea0ebfec7d Size/MD5: 1286140a4dae24e9590b4a191200e14bf89440 Size/MD5: 156240 6903f1e1feeac5300ac772d1cafc7e93 Size/MD5: 109716 ddb887f74ec9063dc48e09899ad6ac5c Size/MD5: 132990 6cb73611f793340038c93b109ac3c15a Size/MD5: 86622 06957569095e5f8a0958dd1ceeee411b Size/MD5: 94824 a58d193d055590d95f378be2c9c24e26 Size/MD5: 1511522 fcdf5fae144aef6932f1c7aafdb52128 Size/MD5: 1521670 3516ed9e8b3b18cf427a38f6f69cad61 Size/MD5: 101312 0c5200e803de7b28ada781829fc96469 Size/MD5: 115566 425f1ca894970a3c567d338ba75a6ff2 Size/MD5: 12204 133104d3fda02d9007276babb08c96b1 Size/MD5: 14292 711666984656587c2b37880a684aec10 Size/MD5: 84676 39e3e852cfbb6206b6ff824027e674fc Size/MD5: 87956 845a24c0546d082b97e960426a4a25ed Size/MD5: 37282 5781318cfcf95db46dbb52284afe6e38 Size/MD5: 40250 76d88263c04422360e9b3d58794522c7 Size/MD5: 140006 896ef23d04fc11ac3b2e7d5237ebe42a Size/MD5: 161504 fee24ae2e0fdb4eae98d89ba32fe4cc1 Size/MD5: 49998 bffebc61937a874953c242a57ce1f664 Size/MD5: 54872 f381d6473132b28069ca85e351fa825f Size/MD5: 308232 da0ab3f9709f42c9925f7202b7da5686 Size/MD5: 330236 90b72d7166e8b6c135e53799e3c6a0cf sparc architecture (Sun SPARC/UltraSPARC) Size/MD5: 50734 4cb3951cf9da37d62867f32f79feb7ef Size/MD5: 2386 5b7e1502de13fd49c24411194a3d15d7 Size/MD5: 40592 a27f11d4561c539161cf7c65316677af Size/MD5: 112138 0d8efd9477fc734e9626214041af7154 Size/MD5: 41350 57930dc08cd1d1046915eeae9e6e5386 Size/MD5: 105096 b0725af7d580ba6d60ac508d01704601 Size/MD5: 6860 ca89ea76fd58bf85c685eecd9c6ea8c0 Size/MD5: 147452 2702367b587579cb840430401d5f5060 Size/MD5: 1839954 9534b16eb5a26c337f1e5439b1505c28 Size/MD5: 811802 6f5970f1fbd0cec2ec25ff67d7620317 Size/MD5: 807530 b01cd5b37de7d8c416809fd94cd87b64 Size/MD5: 7421000 179764f0d4c7d70c0e8d924da24b4294 Size/MD5: 15973974 d324a149fea92873fce677a731c71fb7 Size/MD5: 15631694 07954acb9b5d26251972d9ff15ccb457 Size/MD5: 2170178 3c60e27da17391dcc3fca8ebeee9a9d2 Size/MD5: 2084478 f6bd575f4cdacaf10892dffb2b4a823b Size/MD5: 1811754 669a28e9cee4dfe2ee106b3891727d70 Size/MD5: 7402 978f7985bcad9375ec1fd2f729ca5295 Size/MD5: 263992 2ee6c7a11212dfef241622598f7ff4f5 Size/MD5: 229206 7f80149d236c7b1dd0bfdbfbe265bdc8 Size/MD5: 1048446 f32509cc9915b34ef5f5046d33124357 Size/MD5: 1922058 2253712595a58aa1fcb19a5d10cb4ecf Size/MD5: 9914 f23f7acace731837a86fa44eb7cdc8ea Size/MD5: 40360 5c6a39f167077f0525866192cfae9bf3 Size/MD5: 8722 298b1a6eb9c335634d644833c17d4b9b Size/MD5: 59390 fb851703c10145119deac24fc8d3cf92 Size/MD5: 162878 66e061f744cbf10094be049392e9d8c6 Size/MD5: 66652 31e9282d295acb58d2ffdd9078176999 Size/MD5: 855852 094b9e9264a7bf27d0385145f6cc7d60 Size/MD5: 51822 d6d0fb4dbac3ab3e72b475fa6aba75b1 Size/MD5: 38426 92c0800a8757bb42f8e9ae445317c3af Size/MD5: 283100 f3121b6b524677748d8eba2bda1ef93b . Discover critical Ubuntu kernel vulnerabilities from December 2006 that could lead to unauthorized access and privilege escalation. Upgrade now for safety!. Ubuntu Kernel Security, Linux Exploits, Kernel Upgrade Alerts. . LinuxSecurity.com Team

Calendar%202 Jul 08, 2020 Ubuntu
203

Mageia: 2019-0120 Critical: Kernel Security Flaw Update

This kernel update is based on the upstream 4.14.106 and fixes atleast the following security issue: In the Linux kernel before 4.20.14, expand_downwards in mm/mmap.c lacks a check for the mmap minimum address, which makes it easier for attackers . MGASA-2019-0120 - Updated kernel packages fix security vulnerability Publication date: 29 Mar 2019 URL: https://advisories.mageia.org/MGASA-2019-0120.html Type: security Affected Mageia releases: 6 CVE: CVE-2019-9213 This kernel update is based on the upstream 4.14.106 and fixes atleast the following security issue: In the Linux kernel before 4.20.14, expand_downwards in mm/mmap.c lacks a check for the mmap minimum address, which makes it easier for attackersto exploit kernel NULL pointer dereferences on non-SMAP platforms. This is related to a capability check for the wrong task (CVE-2019-9213). It also adds a preparatory fix for Skylake systems that will receive a microcode update at a later date to address a TSX errata. WireGuard has been updated to 0.0.20190227. For other uptstream fixes in this update, see the referenced changelogs. References: - https://bugs.mageia.org/show_bug.cgi?id=24519 - https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.105 - https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.106 - https://www.cve.org/CVERecord?id=CVE-2019-9213 SRPMS: - 6/core/kernel-4.14.106-1.mga6 - 6/core/kernel-userspace-headers-4.14.106-1.mga6 - 6/core/kmod-vboxadditions-5.2.24-9.mga6 - 6/core/kmod-virtualbox-5.2.24-9.mga6 - 6/core/kmod-xtables-addons-2.13-83.mga6 - 6/core/wireguard-tools-0.0.20190227-1.mga6 . The recent kernel patch MGASA-2019-0120 effectively resolves a significant security vulnerability in Mageia 6, thereby bolstering system defenses.. Kernel Patch,Mageia 6 Update,Security Advisory,Exploit Mitigation. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Mar 29, 2019 Critical Mageia
202

openSUSE Leap 42.3: SUSE-SU-2018:3449-1 Important PostgreSQL96 Exploits

An update that fixes two vulnerabilities is now available.. openSUSE Security Update: Security update for postgresql96 ______________________________________________________________________________ Announcement ID: openSUSE-SU-2018:3449-1 Rating: important References: #1104199 #1104202 Cross-References: CVE-2018-10915 CVE-2018-10925 Affected Products: openSUSE Leap 42.3 ______________________________________________________________________________ An update that fixes two vulnerabilities is now available. Description: This update for postgresql96 to 9.6.10 fixes the following issues: These security issues were fixed: - CVE-2018-10915: libpq failed to properly reset its internal state between connections. If an affected version of libpq was used with "host" or "hostaddr" connection parameters from untrusted input, attackers could have bypassed client-side connection security features, obtain access to higher privileged connections or potentially cause other impact SQL injection, by causing the PQescape() functions to malfunction (bsc#1104199) - CVE-2018-10925: Add missing authorization check on certain statements involved with "INSERT ... ON CONFLICT DO UPDATE". An attacker with "CREATE TABLE" privileges could have exploited this to read arbitrary bytes server memory. If the attacker also had certain "INSERT" and limited "UPDATE" privileges to a particular table, they could have exploited this to update other columns in the same table (bsc#1104202) For addition details please see https://www.postgresql.org/docs/9.6/release-9-6-10.html This update was imported from the SUSE:SLE-12:Update update project. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 42.3: zypper in -tpatch openSUSE-2018-1278=1 Package List: - openSUSE Leap 42.3 (i586 x86_64): postgresql96-9.6.10-21.1 postgresql96-contrib-9.6.10-21.1 postgresql96-contrib-debuginfo-9.6.10-21.1 postgresql96-debuginfo-9.6.10-21.1 postgresql96-debugsource-9.6.10-21.1 postgresql96-devel-9.6.10-21.1 postgresql96-devel-debuginfo-9.6.10-21.1 postgresql96-libs-debugsource-9.6.10-21.1 postgresql96-plperl-9.6.10-21.1 postgresql96-plperl-debuginfo-9.6.10-21.1 postgresql96-plpython-9.6.10-21.1 postgresql96-plpython-debuginfo-9.6.10-21.1 postgresql96-pltcl-9.6.10-21.1 postgresql96-pltcl-debuginfo-9.6.10-21.1 postgresql96-server-9.6.10-21.1 postgresql96-server-debuginfo-9.6.10-21.1 postgresql96-test-9.6.10-21.1 - openSUSE Leap 42.3 (noarch): postgresql96-docs-9.6.10-21.1 References: https://www.suse.com/security/cve/CVE-2018-10915.html https://www.suse.com/security/cve/CVE-2018-10925.html https://bugzilla.suse.com/1104199 https://bugzilla.suse.com/1104202 -- . The latest update for postgresql96 addresses critical security vulnerabilities. This version is now accessible for users of openSUSE Leap 42.3.. openSUSE Security, PostgreSQL Fix, Security Update, Exploit Mitigation. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Oct 25, 2018 Important OpenSUSE
89

Fedora 29: 2018-f392ab8c84 Critical: Kernel Headers Exploit Mitigation

The 4.18.12 update contains a number of important fixes across the tree. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2018-f392ab8c84 2018-10-08 19:03:11.145914 --------------------------------------------------------------------------------Name : kernel-headers Product : Fedora 29 Version : 4.18.12 Release : 300.fc29 URL : https://www.kernel.org/ Summary : Header files for the Linux kernel for use by glibc Description : Kernel-headers includes the C header files that specify the interface between the Linux kernel and userspace libraries and programs. The header files define structures and constants that are needed for building most standard programs and are also needed for rebuilding the glibc package. --------------------------------------------------------------------------------Update Information: The 4.18.12 update contains a number of important fixes across the tree --------------------------------------------------------------------------------References: [ 1 ] Bug #1635475 - kernel: Privilege escalation on arm64 via KVM hypervisor https://bugzilla.redhat.com/show_bug.cgi?id=1635475 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2018-f392ab8c84' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: List Guidelines:https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . A significant update to the kernel-headers on Fedora 29 addresses critical vulnerabilities, enhancing the system's defenses and providing essential patches for better security.. Kernel Headers, Fedora 29 Security, Threat Mitigation. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Oct 08, 2018 Critical Fedora
98

Red Hat Enterprise Linux 7: RHSA-2018-1632-01 Critical Memory Exploit Fix

An update for libvirt is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Important: libvirt security update Advisory ID: RHSA-2018:1632-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2018:1632 Issue date: 2018-05-21 CVE Names: CVE-2018-3639 ==================================================================== 1. Summary: An update for libvirt is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux Client (v. 7) - x86_64 Red Hat Enterprise Linux Client Optional (v. 7) - x86_64 Red Hat Enterprise Linux ComputeNode (v. 7) - x86_64 Red Hat Enterprise Linux ComputeNode Optional (v. 7) - x86_64 Red Hat Enterprise Linux Server (v. 7) - ppc64, ppc64le, s390x, x86_64 Red Hat Enterprise Linux Server Optional (v. 7) - ppc64, ppc64le, s390x, x86_64 Red Hat Enterprise Linux Workstation (v. 7) - x86_64 Red Hat Enterprise Linux Workstation Optional (v. 7) - x86_64 Red Hat Enterprise Linux for ARM and IBM Power LE (POWER9) Server (v. 7) - ppc64le, s390x Red Hat Enterprise Linux for ARM and IBM Power LE (POWER9) Server Optional (v. 7) - aarch64, ppc64le, s390x 3. Description: The libvirt library contains a C API for managing and interacting with the virtualization capabilities of Linux and other operating systems. In addition,libvirt provides tools for remote management of virtualized systems. Security Fix(es): * An industry-wide issue was found in the way many modern microprocessor designs have implemented speculative execution of Load & Store instructions (a commonly used performance optimization). It relies on the presence of a precisely-defined instruction sequence in the privileged code as well as the fact that memory read from address to which a recent memory write has occurred may see an older value and subsequently cause an update into the microprocessor's data cache even for speculatively executed instructions that never actually commit (retire). As a result, an unprivileged attacker could use this flaw to read privileged memory by conducting targeted cache side-channel attacks. (CVE-2018-3639) Note: This is the libvirt side of the CVE-2018-3639 mitigation. Red Hat would like to thank Ken Johnson (Microsoft Security Response Center) and Jann Horn (Google Project Zero) for reporting this issue. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 After installing the updated packages, libvirtd will be restarted automatically. 5. Bugs fixed (https://bugzilla.redhat.com/): 1566890 - CVE-2018-3639 hw: cpu: speculative store bypass 6. Package List: Red Hat Enterprise Linux Client (v.7): Source: libvirt-3.9.0-14.el7_5.5.src.rpm x86_64: libvirt-3.9.0-14.el7_5.5.x86_64.rpm libvirt-client-3.9.0-14.el7_5.5.i686.rpm libvirt-client-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-config-network-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-config-nwfilter-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-interface-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-lxc-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-network-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-nodedev-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-nwfilter-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-qemu-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-secret-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-core-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-disk-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-gluster-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-iscsi-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-logical-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-mpath-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-rbd-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-scsi-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-kvm-3.9.0-14.el7_5.5.x86_64.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.i686.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.x86_64.rpm libvirt-libs-3.9.0-14.el7_5.5.i686.rpm libvirt-libs-3.9.0-14.el7_5.5.x86_64.rpm Red Hat Enterprise Linux Client Optional (v.7): x86_64: libvirt-admin-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-lxc-3.9.0-14.el7_5.5.x86_64.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.i686.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.x86_64.rpm libvirt-devel-3.9.0-14.el7_5.5.i686.rpm libvirt-devel-3.9.0-14.el7_5.5.x86_64.rpm libvirt-docs-3.9.0-14.el7_5.5.x86_64.rpm libvirt-lock-sanlock-3.9.0-14.el7_5.5.x86_64.rpm libvirt-login-shell-3.9.0-14.el7_5.5.x86_64.rpm libvirt-nss-3.9.0-14.el7_5.5.i686.rpm libvirt-nss-3.9.0-14.el7_5.5.x86_64.rpm Red Hat Enterprise Linux ComputeNode (v. 7): Source: libvirt-3.9.0-14.el7_5.5.src.rpm x86_64: libvirt-client-3.9.0-14.el7_5.5.i686.rpm libvirt-client-3.9.0-14.el7_5.5.x86_64.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.i686.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.x86_64.rpm libvirt-libs-3.9.0-14.el7_5.5.i686.rpm libvirt-libs-3.9.0-14.el7_5.5.x86_64.rpm Red Hat Enterprise Linux ComputeNode Optional (v.7): x86_64: libvirt-3.9.0-14.el7_5.5.x86_64.rpm libvirt-admin-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-config-network-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-config-nwfilter-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-interface-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-lxc-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-network-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-nodedev-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-nwfilter-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-qemu-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-secret-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-core-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-disk-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-gluster-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-iscsi-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-logical-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-mpath-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-rbd-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-scsi-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-kvm-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-lxc-3.9.0-14.el7_5.5.x86_64.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.i686.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.x86_64.rpm libvirt-devel-3.9.0-14.el7_5.5.i686.rpm libvirt-devel-3.9.0-14.el7_5.5.x86_64.rpm libvirt-docs-3.9.0-14.el7_5.5.x86_64.rpm libvirt-lock-sanlock-3.9.0-14.el7_5.5.x86_64.rpm libvirt-login-shell-3.9.0-14.el7_5.5.x86_64.rpm libvirt-nss-3.9.0-14.el7_5.5.i686.rpm libvirt-nss-3.9.0-14.el7_5.5.x86_64.rpm Red Hat Enterprise Linux Server (v.7): Source: libvirt-3.9.0-14.el7_5.5.src.rpm ppc64: libvirt-3.9.0-14.el7_5.5.ppc64.rpm libvirt-client-3.9.0-14.el7_5.5.ppc.rpm libvirt-client-3.9.0-14.el7_5.5.ppc64.rpm libvirt-daemon-3.9.0-14.el7_5.5.ppc64.rpm libvirt-daemon-config-network-3.9.0-14.el7_5.5.ppc64.rpm libvirt-daemon-config-nwfilter-3.9.0-14.el7_5.5.ppc64.rpm libvirt-daemon-driver-interface-3.9.0-14.el7_5.5.ppc64.rpm libvirt-daemon-driver-lxc-3.9.0-14.el7_5.5.ppc64.rpm libvirt-daemon-driver-network-3.9.0-14.el7_5.5.ppc64.rpm libvirt-daemon-driver-nodedev-3.9.0-14.el7_5.5.ppc64.rpm libvirt-daemon-driver-nwfilter-3.9.0-14.el7_5.5.ppc64.rpm libvirt-daemon-driver-qemu-3.9.0-14.el7_5.5.ppc64.rpm libvirt-daemon-driver-secret-3.9.0-14.el7_5.5.ppc64.rpm libvirt-daemon-driver-storage-3.9.0-14.el7_5.5.ppc64.rpm libvirt-daemon-driver-storage-core-3.9.0-14.el7_5.5.ppc64.rpm libvirt-daemon-driver-storage-disk-3.9.0-14.el7_5.5.ppc64.rpm libvirt-daemon-driver-storage-iscsi-3.9.0-14.el7_5.5.ppc64.rpm libvirt-daemon-driver-storage-logical-3.9.0-14.el7_5.5.ppc64.rpm libvirt-daemon-driver-storage-mpath-3.9.0-14.el7_5.5.ppc64.rpm libvirt-daemon-driver-storage-scsi-3.9.0-14.el7_5.5.ppc64.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.ppc.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.ppc64.rpm libvirt-devel-3.9.0-14.el7_5.5.ppc.rpm libvirt-devel-3.9.0-14.el7_5.5.ppc64.rpm libvirt-docs-3.9.0-14.el7_5.5.ppc64.rpm libvirt-libs-3.9.0-14.el7_5.5.ppc.rpm libvirt-libs-3.9.0-14.el7_5.5.ppc64.rpm ppc64le: libvirt-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-client-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-config-network-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-config-nwfilter-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-interface-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-lxc-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-network-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-nodedev-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-nwfilter-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-qemu-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-secret-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-storage-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-storage-core-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-storage-disk-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-storage-iscsi-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-storage-logical-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-storage-mpath-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-storage-scsi-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-kvm-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-devel-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-docs-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-libs-3.9.0-14.el7_5.5.ppc64le.rpm s390x: libvirt-3.9.0-14.el7_5.5.s390x.rpm libvirt-client-3.9.0-14.el7_5.5.s390.rpm libvirt-client-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-config-network-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-config-nwfilter-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-interface-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-lxc-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-network-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-nodedev-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-nwfilter-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-qemu-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-secret-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-storage-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-storage-core-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-storage-disk-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-storage-iscsi-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-storage-logical-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-storage-mpath-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-storage-scsi-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-kvm-3.9.0-14.el7_5.5.s390x.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.s390.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.s390x.rpm libvirt-devel-3.9.0-14.el7_5.5.s390.rpm libvirt-devel-3.9.0-14.el7_5.5.s390x.rpm libvirt-docs-3.9.0-14.el7_5.5.s390x.rpm libvirt-libs-3.9.0-14.el7_5.5.s390.rpm libvirt-libs-3.9.0-14.el7_5.5.s390x.rpm x86_64: libvirt-3.9.0-14.el7_5.5.x86_64.rpm libvirt-client-3.9.0-14.el7_5.5.i686.rpm libvirt-client-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-config-network-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-config-nwfilter-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-interface-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-lxc-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-network-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-nodedev-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-nwfilter-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-qemu-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-secret-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-core-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-disk-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-gluster-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-iscsi-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-logical-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-mpath-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-rbd-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-scsi-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-kvm-3.9.0-14.el7_5.5.x86_64.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.i686.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.x86_64.rpm libvirt-devel-3.9.0-14.el7_5.5.i686.rpm libvirt-devel-3.9.0-14.el7_5.5.x86_64.rpm libvirt-docs-3.9.0-14.el7_5.5.x86_64.rpm libvirt-libs-3.9.0-14.el7_5.5.i686.rpm libvirt-libs-3.9.0-14.el7_5.5.x86_64.rpm Red Hat Enterprise Linux for ARM and IBM Power LE (POWER9) Server (v.7): Source: libvirt-3.9.0-14.el7_5.5.src.rpm ppc64le: libvirt-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-client-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-config-network-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-config-nwfilter-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-interface-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-lxc-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-network-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-nodedev-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-nwfilter-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-qemu-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-secret-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-storage-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-storage-core-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-storage-disk-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-storage-iscsi-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-storage-logical-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-storage-mpath-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-driver-storage-scsi-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-kvm-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-devel-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-docs-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-libs-3.9.0-14.el7_5.5.ppc64le.rpm s390x: libvirt-3.9.0-14.el7_5.5.s390x.rpm libvirt-client-3.9.0-14.el7_5.5.s390.rpm libvirt-client-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-config-network-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-config-nwfilter-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-interface-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-lxc-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-network-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-nodedev-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-nwfilter-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-qemu-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-secret-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-storage-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-storage-core-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-storage-disk-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-storage-iscsi-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-storage-logical-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-storage-mpath-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-driver-storage-scsi-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-kvm-3.9.0-14.el7_5.5.s390x.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.s390.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.s390x.rpm libvirt-devel-3.9.0-14.el7_5.5.s390.rpm libvirt-devel-3.9.0-14.el7_5.5.s390x.rpm libvirt-docs-3.9.0-14.el7_5.5.s390x.rpm libvirt-libs-3.9.0-14.el7_5.5.s390.rpm libvirt-libs-3.9.0-14.el7_5.5.s390x.rpm Red Hat Enterprise Linux Server Optional (v.7): ppc64: libvirt-admin-3.9.0-14.el7_5.5.ppc64.rpm libvirt-daemon-lxc-3.9.0-14.el7_5.5.ppc64.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.ppc.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.ppc64.rpm libvirt-lock-sanlock-3.9.0-14.el7_5.5.ppc64.rpm libvirt-login-shell-3.9.0-14.el7_5.5.ppc64.rpm libvirt-nss-3.9.0-14.el7_5.5.ppc.rpm libvirt-nss-3.9.0-14.el7_5.5.ppc64.rpm ppc64le: libvirt-admin-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-lxc-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-lock-sanlock-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-login-shell-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-nss-3.9.0-14.el7_5.5.ppc64le.rpm s390x: libvirt-admin-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-lxc-3.9.0-14.el7_5.5.s390x.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.s390.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.s390x.rpm libvirt-lock-sanlock-3.9.0-14.el7_5.5.s390x.rpm libvirt-login-shell-3.9.0-14.el7_5.5.s390x.rpm libvirt-nss-3.9.0-14.el7_5.5.s390.rpm libvirt-nss-3.9.0-14.el7_5.5.s390x.rpm x86_64: libvirt-admin-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-lxc-3.9.0-14.el7_5.5.x86_64.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.i686.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.x86_64.rpm libvirt-lock-sanlock-3.9.0-14.el7_5.5.x86_64.rpm libvirt-login-shell-3.9.0-14.el7_5.5.x86_64.rpm libvirt-nss-3.9.0-14.el7_5.5.i686.rpm libvirt-nss-3.9.0-14.el7_5.5.x86_64.rpm Red Hat Enterprise Linux for ARM and IBM Power LE (POWER9) Server Optional (v.7): Source: libvirt-3.9.0-14.el7_5.5.src.rpm aarch64: libvirt-3.9.0-14.el7_5.5.aarch64.rpm libvirt-admin-3.9.0-14.el7_5.5.aarch64.rpm libvirt-client-3.9.0-14.el7_5.5.aarch64.rpm libvirt-daemon-3.9.0-14.el7_5.5.aarch64.rpm libvirt-daemon-config-network-3.9.0-14.el7_5.5.aarch64.rpm libvirt-daemon-config-nwfilter-3.9.0-14.el7_5.5.aarch64.rpm libvirt-daemon-driver-interface-3.9.0-14.el7_5.5.aarch64.rpm libvirt-daemon-driver-lxc-3.9.0-14.el7_5.5.aarch64.rpm libvirt-daemon-driver-network-3.9.0-14.el7_5.5.aarch64.rpm libvirt-daemon-driver-nodedev-3.9.0-14.el7_5.5.aarch64.rpm libvirt-daemon-driver-nwfilter-3.9.0-14.el7_5.5.aarch64.rpm libvirt-daemon-driver-qemu-3.9.0-14.el7_5.5.aarch64.rpm libvirt-daemon-driver-secret-3.9.0-14.el7_5.5.aarch64.rpm libvirt-daemon-driver-storage-3.9.0-14.el7_5.5.aarch64.rpm libvirt-daemon-driver-storage-core-3.9.0-14.el7_5.5.aarch64.rpm libvirt-daemon-driver-storage-disk-3.9.0-14.el7_5.5.aarch64.rpm libvirt-daemon-driver-storage-iscsi-3.9.0-14.el7_5.5.aarch64.rpm libvirt-daemon-driver-storage-logical-3.9.0-14.el7_5.5.aarch64.rpm libvirt-daemon-driver-storage-mpath-3.9.0-14.el7_5.5.aarch64.rpm libvirt-daemon-driver-storage-scsi-3.9.0-14.el7_5.5.aarch64.rpm libvirt-daemon-kvm-3.9.0-14.el7_5.5.aarch64.rpm libvirt-daemon-lxc-3.9.0-14.el7_5.5.aarch64.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.aarch64.rpm libvirt-devel-3.9.0-14.el7_5.5.aarch64.rpm libvirt-docs-3.9.0-14.el7_5.5.aarch64.rpm libvirt-libs-3.9.0-14.el7_5.5.aarch64.rpm libvirt-lock-sanlock-3.9.0-14.el7_5.5.aarch64.rpm libvirt-login-shell-3.9.0-14.el7_5.5.aarch64.rpm libvirt-nss-3.9.0-14.el7_5.5.aarch64.rpm ppc64le: libvirt-admin-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-daemon-lxc-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-lock-sanlock-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-login-shell-3.9.0-14.el7_5.5.ppc64le.rpm libvirt-nss-3.9.0-14.el7_5.5.ppc64le.rpm s390x: libvirt-admin-3.9.0-14.el7_5.5.s390x.rpm libvirt-daemon-lxc-3.9.0-14.el7_5.5.s390x.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.s390.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.s390x.rpm libvirt-lock-sanlock-3.9.0-14.el7_5.5.s390x.rpm libvirt-login-shell-3.9.0-14.el7_5.5.s390x.rpm libvirt-nss-3.9.0-14.el7_5.5.s390.rpm libvirt-nss-3.9.0-14.el7_5.5.s390x.rpm Red Hat Enterprise Linux Workstation (v. 7): Source: libvirt-3.9.0-14.el7_5.5.src.rpm x86_64: libvirt-3.9.0-14.el7_5.5.x86_64.rpm libvirt-client-3.9.0-14.el7_5.5.i686.rpm libvirt-client-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-config-network-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-config-nwfilter-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-interface-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-lxc-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-network-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-nodedev-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-nwfilter-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-qemu-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-secret-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-core-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-disk-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-gluster-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-iscsi-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-logical-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-mpath-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-rbd-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-driver-storage-scsi-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-kvm-3.9.0-14.el7_5.5.x86_64.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.i686.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.x86_64.rpm libvirt-devel-3.9.0-14.el7_5.5.i686.rpm libvirt-devel-3.9.0-14.el7_5.5.x86_64.rpm libvirt-docs-3.9.0-14.el7_5.5.x86_64.rpm libvirt-libs-3.9.0-14.el7_5.5.i686.rpm libvirt-libs-3.9.0-14.el7_5.5.x86_64.rpm Red Hat Enterprise Linux Workstation Optional (v.7): x86_64: libvirt-admin-3.9.0-14.el7_5.5.x86_64.rpm libvirt-daemon-lxc-3.9.0-14.el7_5.5.x86_64.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.i686.rpm libvirt-debuginfo-3.9.0-14.el7_5.5.x86_64.rpm libvirt-lock-sanlock-3.9.0-14.el7_5.5.x86_64.rpm libvirt-login-shell-3.9.0-14.el7_5.5.x86_64.rpm libvirt-nss-3.9.0-14.el7_5.5.i686.rpm libvirt-nss-3.9.0-14.el7_5.5.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/ 7. References: https://access.redhat.com/security/cve/CVE-2018-3639 https://access.redhat.com/security/updates/classification/#important https://access.redhat.com/security/vulnerabilities/ssbd 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2018 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBWwQp8NzjgjWX9erEAQgjIQ/9FPWlz6V6bfpte6N1MYXngwb3QURLtaya fu7q7WCq4GBE2+hqATKLzvpzqYD0wVWuiy2ayQ1TBmLd3Hh2m3fqKq9P/CH3A5Kl HrEvKmhOuCCbRYcGwdV2CibzCNleBONgfsd+jA0vcWuRYUWz8lY0HIHAW/jNZdwm tVGFGmlMPN6tH4cGGIGkG3fq3n2F1V/D4u7vzfOvZi6M4+F2guVDikEF6Vuf3EVf IqKLhrNAPclyE84BnMa6Ql+Jvlj9OUhMHcuft4GfipyJPKcFZD+RicJTBdZQbznr eL+gxRZ4yYOPwjOet0XjuHA+s9jAfi2f4W/+D8UPfOtjFa94D06mClB8IMaVq7sM 3gmyediv6zgEDLFDNGngvh+ords+SLHJZwpmryHjZ6kSGJcSABIL9vTx/oi2IOQf 0Gci5qHP0l//qASkC4Z/ttYdWpgC6AkjZyafS19CAJmCkzmsgNavAouf/ssfzJdI /FI8driEQVDu8Q2hiPOwPisJLW4rkT3F+gSsk5yoEroX21SQODUuKkZ9su+GliiZ ETZG53/W43SxO6VAfn1vW0toI/QuCu4pWjcDXx/fjuxlhWhOIzGwCCt2Z3DitOfc X5aLkw/Or4Jd78yemhOam5b9Gq6n9IFTh7sbuQ2ldd9zxRH0bwSG+nwmS/7/7jxq wQPA6w3E8hM=GAQw -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Canonical announces significant QEMU enhancement tackling severe vulnerability (CVE-2022-1234).. Libvirt Update, Red Hat Security, Important Advisory, Memory Exploit. . Severity: Important. LinuxSecurity.com Team

Calendar%202 May 22, 2018 Important Red Hat
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200