Описание
Security update for the Linux Kernel
The SUSE Linux Enterprise 11 SP3 kernel was updated to fix the following security bug:
CVE-2017-2636: A race condition in the n_hdlc tty Linux kernel driver (drivers/tty/n_hdlc.c) could have been exploited to gain a local privilege escalation (bnc#1027565)
Список пакетов
SUSE Linux Enterprise Point of Sale 11 SP3
kernel-default-3.0.101-0.47.99.1
kernel-default-base-3.0.101-0.47.99.1
kernel-default-devel-3.0.101-0.47.99.1
kernel-ec2-3.0.101-0.47.99.1
kernel-ec2-base-3.0.101-0.47.99.1
kernel-ec2-devel-3.0.101-0.47.99.1
kernel-pae-3.0.101-0.47.99.1
kernel-pae-base-3.0.101-0.47.99.1
kernel-pae-devel-3.0.101-0.47.99.1
kernel-source-3.0.101-0.47.99.1
kernel-syms-3.0.101-0.47.99.1
kernel-trace-3.0.101-0.47.99.1
kernel-trace-base-3.0.101-0.47.99.1
kernel-trace-devel-3.0.101-0.47.99.1
kernel-xen-3.0.101-0.47.99.1
kernel-xen-base-3.0.101-0.47.99.1
kernel-xen-devel-3.0.101-0.47.99.1
SUSE Linux Enterprise Server 11 SP3-LTSS
kernel-bigsmp-3.0.101-0.47.99.1
kernel-bigsmp-base-3.0.101-0.47.99.1
kernel-bigsmp-devel-3.0.101-0.47.99.1
kernel-default-3.0.101-0.47.99.1
kernel-default-base-3.0.101-0.47.99.1
kernel-default-devel-3.0.101-0.47.99.1
kernel-default-man-3.0.101-0.47.99.1
kernel-ec2-3.0.101-0.47.99.1
kernel-ec2-base-3.0.101-0.47.99.1
kernel-ec2-devel-3.0.101-0.47.99.1
kernel-pae-3.0.101-0.47.99.1
kernel-pae-base-3.0.101-0.47.99.1
kernel-pae-devel-3.0.101-0.47.99.1
kernel-source-3.0.101-0.47.99.1
kernel-syms-3.0.101-0.47.99.1
kernel-trace-3.0.101-0.47.99.1
kernel-trace-base-3.0.101-0.47.99.1
kernel-trace-devel-3.0.101-0.47.99.1
kernel-xen-3.0.101-0.47.99.1
kernel-xen-base-3.0.101-0.47.99.1
kernel-xen-devel-3.0.101-0.47.99.1
SUSE Manager 2.1
kernel-bigsmp-3.0.101-0.47.99.1
kernel-bigsmp-base-3.0.101-0.47.99.1
kernel-bigsmp-devel-3.0.101-0.47.99.1
kernel-default-3.0.101-0.47.99.1
kernel-default-base-3.0.101-0.47.99.1
kernel-default-devel-3.0.101-0.47.99.1
kernel-default-man-3.0.101-0.47.99.1
kernel-ec2-3.0.101-0.47.99.1
kernel-ec2-base-3.0.101-0.47.99.1
kernel-ec2-devel-3.0.101-0.47.99.1
kernel-source-3.0.101-0.47.99.1
kernel-syms-3.0.101-0.47.99.1
kernel-trace-3.0.101-0.47.99.1
kernel-trace-base-3.0.101-0.47.99.1
kernel-trace-devel-3.0.101-0.47.99.1
kernel-xen-3.0.101-0.47.99.1
kernel-xen-base-3.0.101-0.47.99.1
kernel-xen-devel-3.0.101-0.47.99.1
SUSE Manager Proxy 2.1
kernel-bigsmp-3.0.101-0.47.99.1
kernel-bigsmp-base-3.0.101-0.47.99.1
kernel-bigsmp-devel-3.0.101-0.47.99.1
kernel-default-3.0.101-0.47.99.1
kernel-default-base-3.0.101-0.47.99.1
kernel-default-devel-3.0.101-0.47.99.1
kernel-ec2-3.0.101-0.47.99.1
kernel-ec2-base-3.0.101-0.47.99.1
kernel-ec2-devel-3.0.101-0.47.99.1
kernel-source-3.0.101-0.47.99.1
kernel-syms-3.0.101-0.47.99.1
kernel-trace-3.0.101-0.47.99.1
kernel-trace-base-3.0.101-0.47.99.1
kernel-trace-devel-3.0.101-0.47.99.1
kernel-xen-3.0.101-0.47.99.1
kernel-xen-base-3.0.101-0.47.99.1
kernel-xen-devel-3.0.101-0.47.99.1
SUSE OpenStack Cloud 5
kernel-bigsmp-3.0.101-0.47.99.1
kernel-bigsmp-base-3.0.101-0.47.99.1
kernel-bigsmp-devel-3.0.101-0.47.99.1
kernel-default-3.0.101-0.47.99.1
kernel-default-base-3.0.101-0.47.99.1
kernel-default-devel-3.0.101-0.47.99.1
kernel-ec2-3.0.101-0.47.99.1
kernel-ec2-base-3.0.101-0.47.99.1
kernel-ec2-devel-3.0.101-0.47.99.1
kernel-source-3.0.101-0.47.99.1
kernel-syms-3.0.101-0.47.99.1
kernel-trace-3.0.101-0.47.99.1
kernel-trace-base-3.0.101-0.47.99.1
kernel-trace-devel-3.0.101-0.47.99.1
kernel-xen-3.0.101-0.47.99.1
kernel-xen-base-3.0.101-0.47.99.1
kernel-xen-devel-3.0.101-0.47.99.1
Ссылки
- Link for SUSE-SU-2017:0913-1
- E-Mail link for SUSE-SU-2017:0913-1
- SUSE Security Ratings
- SUSE Bug 1027565
- SUSE CVE CVE-2017-2636 page
Описание
Race condition in drivers/tty/n_hdlc.c in the Linux kernel through 4.10.1 allows local users to gain privileges or cause a denial of service (double free) by setting the HDLC line discipline.
Затронутые продукты
SUSE Linux Enterprise Point of Sale 11 SP3:kernel-default-3.0.101-0.47.99.1
SUSE Linux Enterprise Point of Sale 11 SP3:kernel-default-base-3.0.101-0.47.99.1
SUSE Linux Enterprise Point of Sale 11 SP3:kernel-default-devel-3.0.101-0.47.99.1
SUSE Linux Enterprise Point of Sale 11 SP3:kernel-ec2-3.0.101-0.47.99.1
Ссылки
- CVE-2017-2636
- SUSE Bug 1027565
- SUSE Bug 1027575
- SUSE Bug 1028372
- SUSE Bug 1115893