Описание
Security update for the Linux Kernel (Live Patch 24 for SLE 12 SP5)
This update for the Linux Kernel 4.12.14-122_91 fixes one issue.
The following security issue was fixed:
- CVE-2021-42739: The firewire subsystem had a buffer overflow related to drivers/media/firewire/firedtv-avc.c and drivers/media/firewire/firedtv-ci.c, because avc_ca_pmt mishandled bounds checking (bsc#1184673).
Список пакетов
SUSE Linux Enterprise Live Patching 12 SP5
kgraft-patch-4_12_14-122_91-default-4-2.2
Ссылки
- Link for SUSE-SU-2022:0242-1
- E-Mail link for SUSE-SU-2022:0242-1
- SUSE Security Ratings
- SUSE Bug 1192036
- SUSE CVE CVE-2021-42739 page
Описание
The firewire subsystem in the Linux kernel through 5.14.13 has a buffer overflow related to drivers/media/firewire/firedtv-avc.c and drivers/media/firewire/firedtv-ci.c, because avc_ca_pmt mishandles bounds checking.
Затронутые продукты
SUSE Linux Enterprise Live Patching 12 SP5:kgraft-patch-4_12_14-122_91-default-4-2.2
Ссылки
- CVE-2021-42739
- SUSE Bug 1184673
- SUSE Bug 1192036
- SUSE Bug 1196722
- SUSE Bug 1196914