Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2016:2181-1

Опубликовано: 29 авг. 2016
Источник: suse-cvrf

Описание

Security update for Linux Kernel Live Patch 1 for SLE 12 SP1

This update for the Linux Kernel 3.12.51-60_20 fixes several issues.

The following security bugs were fixed:

  • CVE-2016-6480: Race condition in the ioctl_send_fib function in drivers/scsi/aacraid/commctrl.c in the Linux kernel allowed local users to cause a denial of service (out-of-bounds access or system crash) by changing a certain size value, aka a 'double fetch' vulnerability (bsc#991667).
  • CVE-2016-5829: Multiple heap-based buffer overflows in the hiddev_ioctl_usage function in drivers/hid/usbhid/hiddev.c in the Linux kernel allowed local users to cause a denial of service or possibly have unspecified other impact via a crafted (1) HIDIOCGUSAGES or (2) HIDIOCSUSAGES ioctl call (bsc#986573).
  • CVE-2016-4997: The compat IPT_SO_SET_REPLACE setsockopt implementation in the netfilter subsystem in the Linux kernel allowed local users to gain privileges or cause a denial of service (memory corruption) by leveraging in-container root access to provide a crafted offset value that triggers an unintended decrement (bsc#986377).

Список пакетов

SUSE Linux Enterprise Live Patching 12
kgraft-patch-3_12_51-60_20-default-6-2.1
kgraft-patch-3_12_51-60_20-xen-6-2.1

Описание

The compat IPT_SO_SET_REPLACE and IP6T_SO_SET_REPLACE setsockopt implementations in the netfilter subsystem in the Linux kernel before 4.6.3 allow local users to gain privileges or cause a denial of service (memory corruption) by leveraging in-container root access to provide a crafted offset value that triggers an unintended decrement.


Затронутые продукты
SUSE Linux Enterprise Live Patching 12:kgraft-patch-3_12_51-60_20-default-6-2.1
SUSE Linux Enterprise Live Patching 12:kgraft-patch-3_12_51-60_20-xen-6-2.1

Ссылки

Описание

Multiple heap-based buffer overflows in the hiddev_ioctl_usage function in drivers/hid/usbhid/hiddev.c in the Linux kernel through 4.6.3 allow local users to cause a denial of service or possibly have unspecified other impact via a crafted (1) HIDIOCGUSAGES or (2) HIDIOCSUSAGES ioctl call.


Затронутые продукты
SUSE Linux Enterprise Live Patching 12:kgraft-patch-3_12_51-60_20-default-6-2.1
SUSE Linux Enterprise Live Patching 12:kgraft-patch-3_12_51-60_20-xen-6-2.1

Ссылки

Описание

Race condition in the ioctl_send_fib function in drivers/scsi/aacraid/commctrl.c in the Linux kernel through 4.7 allows local users to cause a denial of service (out-of-bounds access or system crash) by changing a certain size value, aka a "double fetch" vulnerability.


Затронутые продукты
SUSE Linux Enterprise Live Patching 12:kgraft-patch-3_12_51-60_20-default-6-2.1
SUSE Linux Enterprise Live Patching 12:kgraft-patch-3_12_51-60_20-xen-6-2.1

Ссылки
Уязвимость SUSE-SU-2016:2181-1