Описание
Security update for kernel modules packages
The following kernel modules were rebuild with 'retpoline' enablement to allow full mitigation of the Spectre Variant 2 (CVE-2017-5715, bsc#1068032)
OFED was adjusted to add an entry to control the loading/unloading of cxgb4 to /etc/sysconf/infiniband (bsc#926856).
Список пакетов
SUSE Linux Enterprise Real Time 11 SP4
iscsitarget-kmp-rt-1.4.20_3.0.101_rt130_69.24-0.43.2.1
iscsitarget-kmp-rt_trace-1.4.20_3.0.101_rt130_69.24-0.43.2.1
ofed-kmp-rt-1.5.4.1_3.0.101_rt130_69.24-22.3.1
ofed-kmp-rt_trace-1.5.4.1_3.0.101_rt130_69.24-22.3.1
SUSE Linux Enterprise Server 11 SP4
iscsitarget-1.4.20-0.43.2.1
iscsitarget-kmp-bigmem-1.4.20_3.0.101_108.52-0.43.2.1
iscsitarget-kmp-default-1.4.20_3.0.101_108.52-0.43.2.1
iscsitarget-kmp-pae-1.4.20_3.0.101_108.52-0.43.2.1
iscsitarget-kmp-ppc64-1.4.20_3.0.101_108.52-0.43.2.1
iscsitarget-kmp-trace-1.4.20_3.0.101_108.52-0.43.2.1
iscsitarget-kmp-xen-1.4.20_3.0.101_108.52-0.43.2.1
ofed-1.5.4.1-22.3.1
ofed-doc-1.5.4.1-22.3.1
ofed-kmp-bigmem-1.5.4.1_3.0.101_108.52-22.3.1
ofed-kmp-default-1.5.4.1_3.0.101_108.52-22.3.1
ofed-kmp-pae-1.5.4.1_3.0.101_108.52-22.3.1
ofed-kmp-ppc64-1.5.4.1_3.0.101_108.52-22.3.1
ofed-kmp-trace-1.5.4.1_3.0.101_108.52-22.3.1
SUSE Linux Enterprise Server for SAP Applications 11 SP4
iscsitarget-1.4.20-0.43.2.1
iscsitarget-kmp-bigmem-1.4.20_3.0.101_108.52-0.43.2.1
iscsitarget-kmp-default-1.4.20_3.0.101_108.52-0.43.2.1
iscsitarget-kmp-pae-1.4.20_3.0.101_108.52-0.43.2.1
iscsitarget-kmp-ppc64-1.4.20_3.0.101_108.52-0.43.2.1
iscsitarget-kmp-trace-1.4.20_3.0.101_108.52-0.43.2.1
iscsitarget-kmp-xen-1.4.20_3.0.101_108.52-0.43.2.1
ofed-1.5.4.1-22.3.1
ofed-doc-1.5.4.1-22.3.1
ofed-kmp-bigmem-1.5.4.1_3.0.101_108.52-22.3.1
ofed-kmp-default-1.5.4.1_3.0.101_108.52-22.3.1
ofed-kmp-pae-1.5.4.1_3.0.101_108.52-22.3.1
ofed-kmp-ppc64-1.5.4.1_3.0.101_108.52-22.3.1
ofed-kmp-trace-1.5.4.1_3.0.101_108.52-22.3.1
SUSE Linux Enterprise Software Development Kit 11 SP4
ofed-devel-1.5.4.1-22.3.1
Ссылки
- Link for SUSE-SU-2018:1784-1
- E-Mail link for SUSE-SU-2018:1784-1
- SUSE Security Ratings
- SUSE Bug 1068032
- SUSE Bug 926856
- SUSE CVE CVE-2017-5715 page
Описание
Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.
Затронутые продукты
SUSE Linux Enterprise Real Time 11 SP4:iscsitarget-kmp-rt-1.4.20_3.0.101_rt130_69.24-0.43.2.1
SUSE Linux Enterprise Real Time 11 SP4:iscsitarget-kmp-rt_trace-1.4.20_3.0.101_rt130_69.24-0.43.2.1
SUSE Linux Enterprise Real Time 11 SP4:ofed-kmp-rt-1.5.4.1_3.0.101_rt130_69.24-22.3.1
SUSE Linux Enterprise Real Time 11 SP4:ofed-kmp-rt_trace-1.5.4.1_3.0.101_rt130_69.24-22.3.1
Ссылки
- CVE-2017-5715
- SUSE Bug 1068032
- SUSE Bug 1074562
- SUSE Bug 1074578
- SUSE Bug 1074701
- SUSE Bug 1074741
- SUSE Bug 1074919
- SUSE Bug 1075006
- SUSE Bug 1075007
- SUSE Bug 1075262
- SUSE Bug 1075419
- SUSE Bug 1076115
- SUSE Bug 1076372
- SUSE Bug 1076606
- SUSE Bug 1078353
- SUSE Bug 1080039
- SUSE Bug 1087887
- SUSE Bug 1087939
- SUSE Bug 1088147
- SUSE Bug 1089055