Important: kernel security, bug fix, and enhancement update. \{'type': 'Security', 'shortCode': 'RL', 'name': 'RLSA-2021:3057', 'synopsis': 'Important: kernel security, bug fix, and enhancement update', 'severity': 'Important', 'topic': 'An update for kernel is now available for Rocky Linux 8.\nRocky Linux Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.', 'description': 'The kernel packages contain the Linux kernel, the core of any Linux operating system.\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.', 'solution': None, 'affectedProducts': ['Rocky Linux 8'], 'fixes': ['1965461', '1971651', '1980101'], 'cves': ['Red Hat:::https://access.redhat.com/hydra/rest/securitydata/cve/CVE-2021-22543.json:::CVE-2021-22543', 'Red Hat:::https://access.redhat.com/hydra/rest/securitydata/cve/CVE-2021-22555.json:::CVE-2021-22555', 'Red Hat:::https://access.redhat.com/hydra/rest/securitydata/cve/CVE-2021-3609.json:::CVE-2021-3609'], 'references': [], 'publishedAt': '2021-08-12T21:14:23.498779Z', 'rpms': ['bpftool-4.18.0-305.12.1.el8_4.aarch64.rpm', 'bpftool-4.18.0-305.12.1.el8_4.x86_64.rpm', 'bpftool-debuginfo-4.18.0-305.12.1.el8_4.aarch64.rpm', 'bpftool-debuginfo-4.18.0-305.12.1.el8_4.x86_64.rpm', 'kernel-4.18.0-305.12.1.el8_4.aarch64.rpm', 'kernel-4.18.0-305.12.1.el8_4.src.rpm', 'kernel-4.18.0-305.12.1.el8_4.x86_64.rpm', 'kernel-abi-stablelists-4.18.0-305.12.1.el8_4.noarch.rpm', 'kernel-core-4.18.0-305.12.1.el8_4.aarch64.rpm', 'kernel-core-4.18.0-305.12.1.el8_4.x86_64.rpm', 'kernel-cross-headers-4.18.0-305.12.1.el8_4.aarch64.rpm', 'kernel-cross-headers-4.18.0-305.12.1.el8_4.x86_64.rpm', 'kernel-debug-4.18.0-305.12.1.el8_4.aarch64.rpm','kernel-debug-4.18.0-305.12.1.el8_4.x86_64.rpm', 'kernel-debug-core-4.18.0-305.12.1.el8_4.aarch64.rpm', 'kernel-debug-core-4.18.0-305.12.1.el8_4.x86_64.rpm', 'kernel-debug-debuginfo-4.18.0-305.12.1.el8_4.aarch64.rpm', 'kernel-debug-debuginfo-4.18.0-305.12.1.el8_4.x86_64.rpm', 'kernel-debug-devel-4.18.0-305.12.1.el8_4.aarch64.rpm', 'kernel-debug-devel-4.18.0-305.12.1.el8_4.x86_64.rpm', 'kernel-debuginfo-4.18.0-305.12.1.el8_4.aarch64.rpm', 'kernel-debuginfo-4.18.0-305.12.1.el8_4.x86_64.rpm', 'kernel-debuginfo-common-aarch64-4.18.0-305.12.1.el8_4.aarch64.rpm', 'kernel-debuginfo-common-x86_64-4.18.0-305.12.1.el8_4.x86_64.rpm', 'kernel-debug-modules-4.18.0-305.12.1.el8_4.aarch64.rpm', 'kernel-debug-modules-4.18.0-305.12.1.el8_4.x86_64.rpm', 'kernel-debug-modules-extra-4.18.0-305.12.1.el8_4.aarch64.rpm', 'kernel-debug-modules-extra-4.18.0-305.12.1.el8_4.x86_64.rpm', 'kernel-devel-4.18.0-305.12.1.el8_4.aarch64.rpm', 'kernel-devel-4.18.0-305.12.1.el8_4.x86_64.rpm', 'kernel-doc-4.18.0-305.12.1.el8_4.noarch.rpm', 'kernel-headers-4.18.0-305.12.1.el8_4.aarch64.rpm', 'kernel-headers-4.18.0-305.12.1.el8_4.x86_64.rpm', 'kernel-modules-4.18.0-305.12.1.el8_4.aarch64.rpm', 'kernel-modules-4.18.0-305.12.1.el8_4.x86_64.rpm', 'kernel-modules-extra-4.18.0-305.12.1.el8_4.aarch64.rpm', 'kernel-modules-extra-4.18.0-305.12.1.el8_4.x86_64.rpm', 'kernel-tools-4.18.0-305.12.1.el8_4.aarch64.rpm', 'kernel-tools-4.18.0-305.12.1.el8_4.x86_64.rpm', 'kernel-tools-debuginfo-4.18.0-305.12.1.el8_4.aarch64.rpm', 'kernel-tools-debuginfo-4.18.0-305.12.1.el8_4.x86_64.rpm', 'kernel-tools-libs-4.18.0-305.12.1.el8_4.aarch64.rpm', 'kernel-tools-libs-4.18.0-305.12.1.el8_4.x86_64.rpm', 'kernel-tools-libs-devel-4.18.0-305.12.1.el8_4.aarch64.rpm', 'kernel-tools-libs-devel-4.18.0-305.12.1.el8_4.x86_64.rpm', 'perf-4.18.0-305.12.1.el8_4.aarch64.rpm', 'perf-4.18.0-305.12.1.el8_4.x86_64.rpm', 'perf-debuginfo-4.18.0-305.12.1.el8_4.aarch64.rpm', 'perf-debuginfo-4.18.0-305.12.1.el8_4.x86_64.rpm', 'python3-perf-4.18.0-305.12.1.el8_4.aarch64.rpm','python3-perf-4.18.0-305.12.1.el8_4.x86_64.rpm', 'python3-perf-debuginfo-4.18.0-305.12.1.el8_4.aarch64.rpm', 'python3-perf-debuginfo-4.18.0-305.12.1.el8_4.x86_64.rpm']}\. A crucial update for the Rocky Linux 8 kernel resolves significant issues and introduces enhancements, bolstering system security and efficiency.. Rocky Linux Kernel Update, Security Patch Rocky Linux, Important Fix, System Security, Bug Fix Linux. . Severity: Important. LinuxSecurity.com Team
An update that fixes 18 vulnerabilities is now available. An update that fixes 18 vulnerabilities is now available. An update that fixes 18 vulnerabilities is now available.. openSUSE Security Update: Security update for Chromium ______________________________________________________________________________ Announcement ID: openSUSE-SU-2017:0740-1 Rating: important References: #1028848 Cross-References: CVE-2017-5029 CVE-2017-5030 CVE-2017-5031 CVE-2017-5032 CVE-2017-5033 CVE-2017-5034 CVE-2017-5035 CVE-2017-5036 CVE-2017-5037 CVE-2017-5038 CVE-2017-5039 CVE-2017-5040 CVE-2017-5041 CVE-2017-5042 CVE-2017-5043 CVE-2017-5044 CVE-2017-5045 CVE-2017-5046 Affected Products: SUSE Package Hub for SUSE Linux Enterprise 12 ______________________________________________________________________________ An update that fixes 18 vulnerabilities is now available. Description: Chromium was updated to 57.0.2987.98 to fix security issues and bugs. The following vulnerabilities were fixed (bsc#1028848): - CVE-2017-5030: Memory corruption in V8 - CVE-2017-5031: Use after free in ANGLE - CVE-2017-5032: Out of bounds write in PDFium - CVE-2017-5029: Integer overflow in libxslt - CVE-2017-5034: Use after free in PDFium - CVE-2017-5035: Incorrect security UI in Omnibox - CVE-2017-5036: Use after free in PDFium - CVE-2017-5037: Multiple out of bounds writes in ChunkDemuxer - CVE-2017-5039: Use after free in PDFium - CVE-2017-5040: Information disclosure in V8 - CVE-2017-5041: Address spoofing in Omnibox - CVE-2017-5033: Bypass of Content Security Policy in Blink - CVE-2017-5042: Incorrect handling of cookies in Cast - CVE-2017-5038: Use after free in GuestView - CVE-2017-5043: Use after free in GuestView - CVE-2017-5044: Heap overflow in Skia - CVE-2017-5045: Information disclosure in XSS Auditor -CVE-2017-5046: Information disclosure in Blink The following non-security changes are included: - Address broken rendering on non-intel cards Patch Instructions: To install this openSUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - SUSE Package Hub for SUSE Linux Enterprise 12: zypper in -t patch openSUSE-2017-353=1 To bring your system up-to-date, use "zypper patch". Package List: - SUSE Package Hub for SUSE Linux Enterprise 12 (x86_64): chromedriver-57.0.2987.98-8.1 chromedriver-debuginfo-57.0.2987.98-8.1 chromium-57.0.2987.98-8.1 chromium-debuginfo-57.0.2987.98-8.1 chromium-debugsource-57.0.2987.98-8.1 References: https://www.suse.com/security/cve/CVE-2017-5029.html https://www.suse.com/security/cve/CVE-2017-5030.html https://www.suse.com/security/cve/CVE-2017-5031.html https://www.suse.com/security/cve/CVE-2017-5032.html https://www.suse.com/security/cve/CVE-2017-5033.html https://www.suse.com/security/cve/CVE-2017-5034.html https://www.suse.com/security/cve/CVE-2017-5035.html https://www.suse.com/security/cve/CVE-2017-5036.html https://www.suse.com/security/cve/CVE-2017-5037.html https://www.suse.com/security/cve/CVE-2017-5038.html https://www.suse.com/security/cve/CVE-2017-5039.html https://www.suse.com/security/cve/CVE-2017-5040.html https://www.suse.com/security/cve/CVE-2017-5041.html https://www.suse.com/security/cve/CVE-2017-5042.html https://www.suse.com/security/cve/CVE-2017-5043.html https://www.suse.com/security/cve/CVE-2017-5044.html https://www.suse.com/security/cve/CVE-2017-5045.html https://www.suse.com/security/cve/CVE-2017-5046.html https://bugzilla.suse.com/1028848 . Fedora Security Update ID 2021:0345-1 addresses 15 vulnerabilities in Firefox, bolstering user protection and performance.. openSUSE Security, Chromium Update, Security Fix. . Severity: Important. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.