Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2016:1998-1

Опубликовано: 09 авг. 2016
Источник: suse-cvrf

Описание

Security update for Linux Kernel Live Patch 15 for SLE 12

This update for the Linux Kernel 3.12.60-52_54 fixes several issues.

The following security bugs were fixed:

  • CVE-2016-4470: The key_reject_and_link function in security/keys/key.c in the Linux kernel did not ensure that a certain data structure is initialized, which allowed local users to cause a denial of service (system crash) via vectors involving a crafted keyctl request2 command (bsc#984764).

Список пакетов

SUSE Linux Enterprise Server 12-LTSS
kgraft-patch-3_12_60-52_54-default-2-2.2
kgraft-patch-3_12_60-52_54-xen-2-2.2
SUSE Linux Enterprise Server for SAP Applications 12
kgraft-patch-3_12_60-52_54-default-2-2.2
kgraft-patch-3_12_60-52_54-xen-2-2.2

Описание

The key_reject_and_link function in security/keys/key.c in the Linux kernel through 4.6.3 does not ensure that a certain data structure is initialized, which allows local users to cause a denial of service (system crash) via vectors involving a crafted keyctl request2 command.


Затронутые продукты
SUSE Linux Enterprise Server 12-LTSS:kgraft-patch-3_12_60-52_54-default-2-2.2
SUSE Linux Enterprise Server 12-LTSS:kgraft-patch-3_12_60-52_54-xen-2-2.2
SUSE Linux Enterprise Server for SAP Applications 12:kgraft-patch-3_12_60-52_54-default-2-2.2
SUSE Linux Enterprise Server for SAP Applications 12:kgraft-patch-3_12_60-52_54-xen-2-2.2

Ссылки