An update that solves two vulnerabilities and has one An update that solves two vulnerabilities and has one An update that solves two vulnerabilities and has one errata is now available. errata is now available.. SUSE Security Update: Security update for the Linux Kernel ______________________________________________________________________________ Announcement ID: SUSE-SU-2017:0865-1 Rating: important References: #1027565 #1028372 #1030573 Cross-References: CVE-2017-2636 CVE-2017-7184 Affected Products: SUSE Linux Enterprise Workstation Extension 12-SP1 SUSE Linux Enterprise Software Development Kit 12-SP1 SUSE Linux Enterprise Server 12-SP1 SUSE Linux Enterprise Module for Public Cloud 12 SUSE Linux Enterprise Live Patching 12 SUSE Linux Enterprise Desktop 12-SP1 ______________________________________________________________________________ An update that solves two vulnerabilities and has one errata is now available. Description: The SUSE Linux Enterprise 12 kernel was updated to fix the following security bugs: - CVE-2017-7184: The Linux kernel allowed local users to obtain root privileges or cause a denial of service (heap-based out-of-bounds access) via unspecified vectors, as demonstrated during a Pwn2Own competition at CanSecWest 2017 (bnc#1030573, bnc#1028372). - CVE-2017-2636: Race condition in drivers/tty/n_hdlc.c in the Linux kernel allowed local users to gain privileges or cause a denial of service (double free) by setting the HDLC line discipline (bnc#1027565). Patch Instructions: To install this SUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Workstation Extension 12-SP1: zypper in -t patch SUSE-SLE-WE-12-SP1-2017-485=1 - SUSE Linux Enterprise Software Development Kit 12-SP1: zypper in -tpatch SUSE-SLE-SDK-12-SP1-2017-485=1 - SUSE Linux Enterprise Server 12-SP1: zypper in -t patch SUSE-SLE-SERVER-12-SP1-2017-485=1 - SUSE Linux Enterprise Module for Public Cloud 12: zypper in -t patch SUSE-SLE-Module-Public-Cloud-12-2017-485=1 - SUSE Linux Enterprise Live Patching 12: zypper in -t patch SUSE-SLE-Live-Patching-12-2017-485=1 - SUSE Linux Enterprise Desktop 12-SP1: zypper in -t patch SUSE-SLE-DESKTOP-12-SP1-2017-485=1 To bring your system up-to-date, use "zypper patch". Package List: - SUSE Linux Enterprise Workstation Extension 12-SP1 (x86_64): kernel-default-debuginfo-3.12.69-60.64.35.1 kernel-default-debugsource-3.12.69-60.64.35.1 kernel-default-extra-3.12.69-60.64.35.1 kernel-default-extra-debuginfo-3.12.69-60.64.35.1 - SUSE Linux Enterprise Software Development Kit 12-SP1 (ppc64le s390x x86_64): kernel-obs-build-3.12.69-60.64.35.1 kernel-obs-build-debugsource-3.12.69-60.64.35.1 - SUSE Linux Enterprise Software Development Kit 12-SP1 (noarch): kernel-docs-3.12.69-60.64.35.3 - SUSE Linux Enterprise Server 12-SP1 (ppc64le s390x x86_64): kernel-default-3.12.69-60.64.35.1 kernel-default-base-3.12.69-60.64.35.1 kernel-default-base-debuginfo-3.12.69-60.64.35.1 kernel-default-debuginfo-3.12.69-60.64.35.1 kernel-default-debugsource-3.12.69-60.64.35.1 kernel-default-devel-3.12.69-60.64.35.1 kernel-syms-3.12.69-60.64.35.1 - SUSE Linux Enterprise Server 12-SP1 (noarch): kernel-devel-3.12.69-60.64.35.1 kernel-macros-3.12.69-60.64.35.1 kernel-source-3.12.69-60.64.35.1 - SUSE Linux Enterprise Server 12-SP1 (x86_64): kernel-xen-3.12.69-60.64.35.1 kernel-xen-base-3.12.69-60.64.35.1 kernel-xen-base-debuginfo-3.12.69-60.64.35.1 kernel-xen-debuginfo-3.12.69-60.64.35.1 kernel-xen-debugsource-3.12.69-60.64.35.1 kernel-xen-devel-3.12.69-60.64.35.1 - SUSE Linux Enterprise Server 12-SP1 (s390x): kernel-default-man-3.12.69-60.64.35.1 - SUSE Linux Enterprise Module for Public Cloud 12 (x86_64): kernel-ec2-3.12.69-60.64.35.1 kernel-ec2-debuginfo-3.12.69-60.64.35.1 kernel-ec2-debugsource-3.12.69-60.64.35.1 kernel-ec2-devel-3.12.69-60.64.35.1 kernel-ec2-extra-3.12.69-60.64.35.1 kernel-ec2-extra-debuginfo-3.12.69-60.64.35.1 - SUSE Linux Enterprise Live Patching 12 (x86_64): kgraft-patch-3_12_69-60_64_35-default-1-2.1 kgraft-patch-3_12_69-60_64_35-xen-1-2.1 - SUSE Linux Enterprise Desktop 12-SP1 (x86_64): kernel-default-3.12.69-60.64.35.1 kernel-default-debuginfo-3.12.69-60.64.35.1 kernel-default-debugsource-3.12.69-60.64.35.1 kernel-default-devel-3.12.69-60.64.35.1 kernel-default-extra-3.12.69-60.64.35.1 kernel-default-extra-debuginfo-3.12.69-60.64.35.1 kernel-syms-3.12.69-60.64.35.1 kernel-xen-3.12.69-60.64.35.1 kernel-xen-debuginfo-3.12.69-60.64.35.1 kernel-xen-debugsource-3.12.69-60.64.35.1 kernel-xen-devel-3.12.69-60.64.35.1 - SUSE Linux Enterprise Desktop 12-SP1 (noarch): kernel-devel-3.12.69-60.64.35.1 kernel-macros-3.12.69-60.64.35.1 kernel-source-3.12.69-60.64.35.1 References: https://www.suse.com/security/cve/CVE-2017-2636.html https://www.suse.com/security/cve/CVE-2017-7184.html https://bugzilla.suse.com/1027565 https://bugzilla.suse.com/1028372 https://bugzilla.suse.com/1030573 . SUSE has released a crucial Security Update for the Linux Kernel, tackling several vulnerabilities. It is vital to keep your system current to reduce potential threats.. SUSE Linux, Kernel Update, Privilege Escalation, Security Bug Fixes, Denial of Service. . Severity: Important. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.