You are here
Home > Preporuke > Sigurnosni nedostaci programskog paketa Linux Kernel Live Patch

Sigurnosni nedostaci programskog paketa Linux Kernel Live Patch

SUSE Security Update: Security update for Linux Kernel Live Patch 0 for SLE 12 SP2
______________________________________________________________________________

Announcement ID: SUSE-SU-2017:0227-1
Rating: important
References: #1012852 #1013543 #1014271 #1019079
Cross-References: CVE-2016-10088 CVE-2016-8632 CVE-2016-9576
CVE-2016-9794
Affected Products:
SUSE Linux Enterprise Live Patching 12
______________________________________________________________________________

An update that fixes four vulnerabilities is now available.

Description:

This update for the Linux Kernel 4.4.21-69 fixes several issues.

The following security bugs were fixed:
– CVE-2016-10088: The sg implementation in the Linux kernel did not
properly restrict write operations in situations where the KERNEL_DS
option is set, which allowed local users to read or write to arbitrary
kernel memory locations or cause a denial of service (use-after-free) by
leveraging access to a /dev/sg device, related to block/bsg.c and
drivers/scsi/sg.c. NOTE: this vulnerability exists because of an
incomplete fix for CVE-2016-9576 (bsc#1019079).
– CVE-2016-9794: Race condition in the snd_pcm_period_elapsed function in
sound/core/pcm_lib.c in the ALSA subsystem in the Linux kernel allowed
local users to cause a denial of service (use-after-free) or possibly
have unspecified other impact via a crafted SNDRV_PCM_TRIGGER_START
command (bsc#1013543).
– CVE-2016-8632: The tipc_msg_build function in net/tipc/msg.c in the
Linux kernel did not validate the relationship between the minimum
fragment length and the maximum packet size, which allowed local users
to gain privileges or cause a denial of service (heap-based buffer
overflow) by leveraging the CAP_NET_ADMIN capability (bsc#1012852).
– CVE-2016-9576: The blk_rq_map_user_iov function in block/blk-map.c in
the Linux kernel did not properly restrict the type of iterator, which
allowed local users to read or write to arbitrary kernel memory
locations or cause a denial of service (use-after-free) by leveraging
access to a /dev/sg device (bsc#1014271). before 4.8.14

Patch Instructions:

To install this SUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:

– SUSE Linux Enterprise Live Patching 12:

zypper in -t patch SUSE-SLE-Live-Patching-12-2017-108=1

To bring your system up-to-date, use “zypper patch”.

Package List:

– SUSE Linux Enterprise Live Patching 12 (x86_64):

kgraft-patch-4_4_21-69-default-3-8.2

References:

https://www.suse.com/security/cve/CVE-2016-10088.html
https://www.suse.com/security/cve/CVE-2016-8632.html
https://www.suse.com/security/cve/CVE-2016-9576.html
https://www.suse.com/security/cve/CVE-2016-9794.html
https://bugzilla.suse.com/1012852
https://bugzilla.suse.com/1013543
https://bugzilla.suse.com/1014271
https://bugzilla.suse.com/1019079


To unsubscribe, e-mail: opensuse-security-announce+unsubscribe@opensuse.org
For additional commands, e-mail: opensuse-security-announce+help@opensuse.org

SUSE Security Update: Security update for Linux Kernel Live Patch 1 for SLE 12 SP2
______________________________________________________________________________

Announcement ID: SUSE-SU-2017:0228-1
Rating: important
References: #1012852 #1013543 #1014271 #1019079
Cross-References: CVE-2016-10088 CVE-2016-8632 CVE-2016-9576
CVE-2016-9794
Affected Products:
SUSE Linux Enterprise Live Patching 12
______________________________________________________________________________

An update that fixes four vulnerabilities is now available.

Description:

This update for the Linux Kernel 4.4.21-81 fixes several issues.

The following security bugs were fixed:
– CVE-2016-10088: The sg implementation in the Linux kernel did not
properly restrict write operations in situations where the KERNEL_DS
option is set, which allowed local users to read or write to arbitrary
kernel memory locations or cause a denial of service (use-after-free) by
leveraging access to a /dev/sg device, related to block/bsg.c and
drivers/scsi/sg.c. NOTE: this vulnerability exists because of an
incomplete fix for CVE-2016-9576 (bsc#1019079).
– CVE-2016-9794: Race condition in the snd_pcm_period_elapsed function in
sound/core/pcm_lib.c in the ALSA subsystem in the Linux kernel allowed
local users to cause a denial of service (use-after-free) or possibly
have unspecified other impact via a crafted SNDRV_PCM_TRIGGER_START
command (bsc#1013543).
– CVE-2016-8632: The tipc_msg_build function in net/tipc/msg.c in the
Linux kernel did not validate the relationship between the minimum
fragment length and the maximum packet size, which allowed local users
to gain privileges or cause a denial of service (heap-based buffer
overflow) by leveraging the CAP_NET_ADMIN capability (bsc#1012852).
– CVE-2016-9576: The blk_rq_map_user_iov function in block/blk-map.c in
the Linux kernel did not properly restrict the type of iterator, which
allowed local users to read or write to arbitrary kernel memory
locations or cause a denial of service (use-after-free) by leveraging
access to a /dev/sg device (bsc#1014271). before 4.8.14

Patch Instructions:

To install this SUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:

– SUSE Linux Enterprise Live Patching 12:

zypper in -t patch SUSE-SLE-Live-Patching-12-2017-110=1

To bring your system up-to-date, use “zypper patch”.

Package List:

– SUSE Linux Enterprise Live Patching 12 (x86_64):

kgraft-patch-4_4_21-81-default-3-2.1

References:

https://www.suse.com/security/cve/CVE-2016-10088.html
https://www.suse.com/security/cve/CVE-2016-8632.html
https://www.suse.com/security/cve/CVE-2016-9576.html
https://www.suse.com/security/cve/CVE-2016-9794.html
https://bugzilla.suse.com/1012852
https://bugzilla.suse.com/1013543
https://bugzilla.suse.com/1014271
https://bugzilla.suse.com/1019079


To unsubscribe, e-mail: opensuse-security-announce+unsubscribe@opensuse.org
For additional commands, e-mail: opensuse-security-announce+help@opensuse.org

SUSE Security Update: Security update for Linux Kernel Live Patch 2 for SLE 12 SP1
______________________________________________________________________________

Announcement ID: SUSE-SU-2017:0231-1
Rating: important
References: #1012852 #1013543 #1013604 #1014271 #1017589

Cross-References: CVE-2016-8632 CVE-2016-9576 CVE-2016-9794
CVE-2016-9806
Affected Products:
SUSE Linux Enterprise Live Patching 12
______________________________________________________________________________

An update that solves four vulnerabilities and has one
errata is now available.

Description:

This update for the Linux Kernel 3.12.51-60_25 fixes several issues.

The following security bugs were fixed:
– CVE-2016-9806: Race condition in the netlink_dump function in
net/netlink/af_netlink.c in the Linux kernel allowed local users to
cause a denial of service (double free) or possibly have unspecified
other impact via a crafted application that made sendmsg system calls,
leading to a free operation associated with a new dump that started
earlier than anticipated (bsc#1017589).
– CVE-2016-9794: Race condition in the snd_pcm_period_elapsed function in
sound/core/pcm_lib.c in the ALSA subsystem in the Linux kernel allowed
local users to cause a denial of service (use-after-free) or possibly
have unspecified other impact via a crafted SNDRV_PCM_TRIGGER_START
command (bsc#1013543).
– CVE-2016-8632: The tipc_msg_build function in net/tipc/msg.c in the
Linux kernel did not validate the relationship between the minimum
fragment length and the maximum packet size, which allowed local users
to gain privileges or cause a denial of service (heap-based buffer
overflow) by leveraging the CAP_NET_ADMIN capability (bsc#1012852).
– CVE-2016-9576: The blk_rq_map_user_iov function in block/blk-map.c in
the Linux kernel did not properly restrict the type of iterator, which
allowed local users to read or write to arbitrary kernel memory
locations or cause a denial of service (use-after-free) by leveraging
access to a /dev/sg device (bsc#1014271).

Patch Instructions:

To install this SUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:

– SUSE Linux Enterprise Live Patching 12:

zypper in -t patch SUSE-SLE-Live-Patching-12-2017-116=1

To bring your system up-to-date, use “zypper patch”.

Package List:

– SUSE Linux Enterprise Live Patching 12 (x86_64):

kgraft-patch-3_12_51-60_25-default-8-2.1
kgraft-patch-3_12_51-60_25-xen-8-2.1

References:

https://www.suse.com/security/cve/CVE-2016-8632.html
https://www.suse.com/security/cve/CVE-2016-9576.html
https://www.suse.com/security/cve/CVE-2016-9794.html
https://www.suse.com/security/cve/CVE-2016-9806.html
https://bugzilla.suse.com/1012852
https://bugzilla.suse.com/1013543
https://bugzilla.suse.com/1013604
https://bugzilla.suse.com/1014271
https://bugzilla.suse.com/1017589


To unsubscribe, e-mail: opensuse-security-announce+unsubscribe@opensuse.org
For additional commands, e-mail: opensuse-security-announce+help@opensuse.org
 

 

SUSE Security Update: Security update for Linux Kernel Live Patch 2 for SLE 12 SP2

______________________________________________________________________________

 

Announcement ID:    SUSE-SU-2017:0293-1

Rating:             important

References:         #1013543 #1014271 #1019079 

Cross-References:   CVE-2016-10088 CVE-2016-9576 CVE-2016-9794

                   

Affected Products:

                    SUSE Linux Enterprise Live Patching 12

______________________________________________________________________________

 

   An update that fixes three vulnerabilities is now available.

 

Description:

 

   This update for the Linux Kernel 4.4.21-84 fixes several issues.

 

   The following security bugs were fixed:

   - CVE-2016-10088: The sg implementation in the Linux kernel did not

     properly restrict write operations in situations where the KERNEL_DS

     option is set, which allowed local users to read or write to arbitrary

     kernel memory locations or cause a denial of service (use-after-free) by

     leveraging access to a /dev/sg device, related to block/bsg.c and

     drivers/scsi/sg.c. NOTE: this vulnerability exists because of an

     incomplete fix for CVE-2016-9576 (bsc#1019079).

   - CVE-2016-9794: Race condition in the snd_pcm_period_elapsed function in

     sound/core/pcm_lib.c in the ALSA subsystem in the Linux kernel allowed

     local users to cause a denial of service (use-after-free) or possibly

     have unspecified other impact via a crafted SNDRV_PCM_TRIGGER_START

     command (bsc#1013543).

   - CVE-2016-9576: The blk_rq_map_user_iov function in block/blk-map.c in

     the Linux kernel did not properly restrict the type of iterator, which

     allowed local users to read or write to arbitrary kernel memory

     locations or cause a denial of service (use-after-free) by leveraging

     access to a /dev/sg device (bsc#1014271). before 4.8.14

 

 

Patch Instructions:

 

   To install this SUSE Security Update use YaST online_update.

   Alternatively you can run the command listed for your product:

 

   - SUSE Linux Enterprise Live Patching 12:

 

      zypper in -t patch SUSE-SLE-Live-Patching-12-2017-154=1

 

   To bring your system up-to-date, use “zypper patch”.

 

 

Package List:

 

   - SUSE Linux Enterprise Live Patching 12 (x86_64):

 

      kgraft-patch-4_4_21-84-default-2-2.1

 

 

References:

 

   https://www.suse.com/security/cve/CVE-2016-10088.html

   https://www.suse.com/security/cve/CVE-2016-9576.html

   https://www.suse.com/security/cve/CVE-2016-9794.html

   https://bugzilla.suse.com/1013543

   https://bugzilla.suse.com/1014271

   https://bugzilla.suse.com/1019079

 

– 

To unsubscribe, e-mail: opensuse-security-announce+unsubscribe@opensuse.org

For additional commands, e-mail: opensuse-security-announce+help@opensuse.org

 

SUSE Security Update: Security update for Linux Kernel Live Patch 3 for SLE 12 SP1
______________________________________________________________________________

Announcement ID: SUSE-SU-2017:0233-1
Rating: important
References: #1012852 #1013543 #1013604 #1014271 #1017589

Cross-References: CVE-2016-8632 CVE-2016-9576 CVE-2016-9794
CVE-2016-9806
Affected Products:
SUSE Linux Enterprise Live Patching 12
______________________________________________________________________________

An update that solves four vulnerabilities and has one
errata is now available.

Description:

This update for the Linux Kernel 3.12.53-60_30 fixes several issues.

The following security bugs were fixed:
– CVE-2016-9806: Race condition in the netlink_dump function in
net/netlink/af_netlink.c in the Linux kernel allowed local users to
cause a denial of service (double free) or possibly have unspecified
other impact via a crafted application that made sendmsg system calls,
leading to a free operation associated with a new dump that started
earlier than anticipated (bsc#1017589).
– CVE-2016-9794: Race condition in the snd_pcm_period_elapsed function in
sound/core/pcm_lib.c in the ALSA subsystem in the Linux kernel allowed
local users to cause a denial of service (use-after-free) or possibly
have unspecified other impact via a crafted SNDRV_PCM_TRIGGER_START
command (bsc#1013543).
– CVE-2016-8632: The tipc_msg_build function in net/tipc/msg.c in the
Linux kernel did not validate the relationship between the minimum
fragment length and the maximum packet size, which allowed local users
to gain privileges or cause a denial of service (heap-based buffer
overflow) by leveraging the CAP_NET_ADMIN capability (bsc#1012852).
– CVE-2016-9576: The blk_rq_map_user_iov function in block/blk-map.c in
the Linux kernel did not properly restrict the type of iterator, which
allowed local users to read or write to arbitrary kernel memory
locations or cause a denial of service (use-after-free) by leveraging
access to a /dev/sg device (bsc#1014271).

Patch Instructions:

To install this SUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:

– SUSE Linux Enterprise Live Patching 12:

zypper in -t patch SUSE-SLE-Live-Patching-12-2017-117=1

To bring your system up-to-date, use “zypper patch”.

Package List:

– SUSE Linux Enterprise Live Patching 12 (x86_64):

kgraft-patch-3_12_53-60_30-default-7-2.1
kgraft-patch-3_12_53-60_30-xen-7-2.1

References:

https://www.suse.com/security/cve/CVE-2016-8632.html
https://www.suse.com/security/cve/CVE-2016-9576.html
https://www.suse.com/security/cve/CVE-2016-9794.html
https://www.suse.com/security/cve/CVE-2016-9806.html
https://bugzilla.suse.com/1012852
https://bugzilla.suse.com/1013543
https://bugzilla.suse.com/1013604
https://bugzilla.suse.com/1014271
https://bugzilla.suse.com/1017589


To unsubscribe, e-mail: opensuse-security-announce+unsubscribe@opensuse.org
For additional commands, e-mail: opensuse-security-announce+help@opensuse.org

SUSE Security Update: Security update for Linux Kernel Live Patch 3 for SLE 12 SP2
______________________________________________________________________________

Announcement ID: SUSE-SU-2017:0232-1
Rating: important
References: #1019079
Cross-References: CVE-2016-10088
Affected Products:
SUSE Linux Enterprise Live Patching 12
______________________________________________________________________________

An update that fixes one vulnerability is now available.

Description:

This update for the Linux Kernel 4.4.21-90 fixes several issues.

The following security bugs were fixed:
– CVE-2016-10088: The sg implementation in the Linux kernel did not
properly restrict write operations in situations where the KERNEL_DS
option is set, which allowed local users to read or write to arbitrary
kernel memory locations or cause a denial of service (use-after-free) by
leveraging access to a /dev/sg device, related to block/bsg.c and
drivers/scsi/sg.c. NOTE: this vulnerability exists because of an
incomplete fix for CVE-2016-9576 (bsc#1019079).

Patch Instructions:

To install this SUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:

– SUSE Linux Enterprise Live Patching 12:

zypper in -t patch SUSE-SLE-Live-Patching-12-2017-109=1

To bring your system up-to-date, use “zypper patch”.

Package List:

– SUSE Linux Enterprise Live Patching 12 (x86_64):

kgraft-patch-4_4_21-90-default-2-2.1

References:

https://www.suse.com/security/cve/CVE-2016-10088.html
https://bugzilla.suse.com/1019079


To unsubscribe, e-mail: opensuse-security-announce+unsubscribe@opensuse.org
For additional commands, e-mail: opensuse-security-announce+help@opensuse.org

SUSE Security Update: Security update for Linux Kernel Live Patch 4 for SLE 12 SP1
______________________________________________________________________________

Announcement ID: SUSE-SU-2017:0234-1
Rating: important
References: #1012852 #1013543 #1013604 #1014271 #1017589

Cross-References: CVE-2016-8632 CVE-2016-9576 CVE-2016-9794
CVE-2016-9806
Affected Products:
SUSE Linux Enterprise Live Patching 12
______________________________________________________________________________

An update that solves four vulnerabilities and has one
errata is now available.

Description:

This update for the Linux Kernel 3.12.57-60_35 fixes several issues.

The following security bugs were fixed:
– CVE-2016-9806: Race condition in the netlink_dump function in
net/netlink/af_netlink.c in the Linux kernel allowed local users to
cause a denial of service (double free) or possibly have unspecified
other impact via a crafted application that made sendmsg system calls,
leading to a free operation associated with a new dump that started
earlier than anticipated (bsc#1017589).
– CVE-2016-9794: Race condition in the snd_pcm_period_elapsed function in
sound/core/pcm_lib.c in the ALSA subsystem in the Linux kernel allowed
local users to cause a denial of service (use-after-free) or possibly
have unspecified other impact via a crafted SNDRV_PCM_TRIGGER_START
command (bsc#1013543).
– CVE-2016-8632: The tipc_msg_build function in net/tipc/msg.c in the
Linux kernel did not validate the relationship between the minimum
fragment length and the maximum packet size, which allowed local users
to gain privileges or cause a denial of service (heap-based buffer
overflow) by leveraging the CAP_NET_ADMIN capability (bsc#1012852).
– CVE-2016-9576: The blk_rq_map_user_iov function in block/blk-map.c in
the Linux kernel did not properly restrict the type of iterator, which
allowed local users to read or write to arbitrary kernel memory
locations or cause a denial of service (use-after-free) by leveraging
access to a /dev/sg device (bsc#1014271).

Patch Instructions:

To install this SUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:

– SUSE Linux Enterprise Live Patching 12:

zypper in -t patch SUSE-SLE-Live-Patching-12-2017-115=1

To bring your system up-to-date, use “zypper patch”.

Package List:

– SUSE Linux Enterprise Live Patching 12 (x86_64):

kgraft-patch-3_12_57-60_35-default-6-2.1
kgraft-patch-3_12_57-60_35-xen-6-2.1

References:

https://www.suse.com/security/cve/CVE-2016-8632.html
https://www.suse.com/security/cve/CVE-2016-9576.html
https://www.suse.com/security/cve/CVE-2016-9794.html
https://www.suse.com/security/cve/CVE-2016-9806.html
https://bugzilla.suse.com/1012852
https://bugzilla.suse.com/1013543
https://bugzilla.suse.com/1013604
https://bugzilla.suse.com/1014271
https://bugzilla.suse.com/1017589


To unsubscribe, e-mail: opensuse-security-announce+unsubscribe@opensuse.org
For additional commands, e-mail: opensuse-security-announce+help@opensuse.org

 

SUSE Security Update: Security update for Linux Kernel Live Patch 4 for SLE 12 SP2

______________________________________________________________________________

 

Announcement ID:    SUSE-SU-2017:0307-1

Rating:             important

References:         #1019079 

Cross-References:   CVE-2016-10088

Affected Products:

                    SUSE Linux Enterprise Live Patching 12

______________________________________________________________________________

 

   An update that fixes one vulnerability is now available.

 

Description:

 

 

   This update for the Linux Kernel fixes one security issue:

 

   - CVE-2016-10088: The sg implementation in the Linux kernel did not

     properly restrict write operations in situations where the KERNEL_DS

     option is set, which allowed local users to read or write to arbitrary

     kernel memory locations or cause a denial of service (use-after-free) by

     leveraging access to a /dev/sg device (bsc#1017710).

 

 

Patch Instructions:

 

   To install this SUSE Security Update use YaST online_update.

   Alternatively you can run the command listed for your product:

 

   - SUSE Linux Enterprise Live Patching 12:

 

      zypper in -t patch SUSE-SLE-Live-Patching-12-2017-162=1

 

   To bring your system up-to-date, use “zypper patch”.

 

 

Package List:

 

   - SUSE Linux Enterprise Live Patching 12 (x86_64):

 

      kgraft-patch-4_4_38-93-default-2-2.1

 

 

References:

 

   https://www.suse.com/security/cve/CVE-2016-10088.html

   https://bugzilla.suse.com/1019079

 

– 

To unsubscribe, e-mail: opensuse-security-announce+unsubscribe@opensuse.org

For additional commands, e-mail: opensuse-security-announce+help@opensuse.org

 

SUSE Security Update: Security update for Linux Kernel Live Patch 5 for SLE 12 SP1
______________________________________________________________________________

Announcement ID: SUSE-SU-2017:0235-1
Rating: important
References: #1012852 #1013543 #1013604 #1014271 #1017589

Cross-References: CVE-2016-8632 CVE-2016-9576 CVE-2016-9794
CVE-2016-9806
Affected Products:
SUSE Linux Enterprise Live Patching 12
______________________________________________________________________________

An update that solves four vulnerabilities and has one
errata is now available.

Description:

This update for the Linux Kernel 3.12.59-60_41 fixes several issues.

The following security bugs were fixed:
– CVE-2016-9806: Race condition in the netlink_dump function in
net/netlink/af_netlink.c in the Linux kernel allowed local users to
cause a denial of service (double free) or possibly have unspecified
other impact via a crafted application that made sendmsg system calls,
leading to a free operation associated with a new dump that started
earlier than anticipated (bsc#1017589).
– CVE-2016-9794: Race condition in the snd_pcm_period_elapsed function in
sound/core/pcm_lib.c in the ALSA subsystem in the Linux kernel allowed
local users to cause a denial of service (use-after-free) or possibly
have unspecified other impact via a crafted SNDRV_PCM_TRIGGER_START
command (bsc#1013543).
– CVE-2016-8632: The tipc_msg_build function in net/tipc/msg.c in the
Linux kernel did not validate the relationship between the minimum
fragment length and the maximum packet size, which allowed local users
to gain privileges or cause a denial of service (heap-based buffer
overflow) by leveraging the CAP_NET_ADMIN capability (bsc#1012852).
– CVE-2016-9576: The blk_rq_map_user_iov function in block/blk-map.c in
the Linux kernel did not properly restrict the type of iterator, which
allowed local users to read or write to arbitrary kernel memory
locations or cause a denial of service (use-after-free) by leveraging
access to a /dev/sg device (bsc#1014271).

Patch Instructions:

To install this SUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:

– SUSE Linux Enterprise Live Patching 12:

zypper in -t patch SUSE-SLE-Live-Patching-12-2017-114=1

To bring your system up-to-date, use “zypper patch”.

Package List:

– SUSE Linux Enterprise Live Patching 12 (x86_64):

kgraft-patch-3_12_59-60_41-default-6-2.1
kgraft-patch-3_12_59-60_41-xen-6-2.1

References:

https://www.suse.com/security/cve/CVE-2016-8632.html
https://www.suse.com/security/cve/CVE-2016-9576.html
https://www.suse.com/security/cve/CVE-2016-9794.html
https://www.suse.com/security/cve/CVE-2016-9806.html
https://bugzilla.suse.com/1012852
https://bugzilla.suse.com/1013543
https://bugzilla.suse.com/1013604
https://bugzilla.suse.com/1014271
https://bugzilla.suse.com/1017589


To unsubscribe, e-mail: opensuse-security-announce+unsubscribe@opensuse.org
For additional commands, e-mail: opensuse-security-announce+help@opensuse.org

SUSE Security Update: Security update for Linux Kernel Live Patch 6 for SLE 12 SP1
______________________________________________________________________________

Announcement ID: SUSE-SU-2017:0230-1
Rating: important
References: #1012852 #1013543 #1013604 #1014271 #1017589

Cross-References: CVE-2016-8632 CVE-2016-9576 CVE-2016-9794
CVE-2016-9806
Affected Products:
SUSE Linux Enterprise Live Patching 12
______________________________________________________________________________

An update that solves four vulnerabilities and has one
errata is now available.

Description:

This update for the Linux Kernel 3.12.59-60_45 fixes several issues.

The following security bugs were fixed:
– CVE-2016-9806: Race condition in the netlink_dump function in
net/netlink/af_netlink.c in the Linux kernel allowed local users to
cause a denial of service (double free) or possibly have unspecified
other impact via a crafted application that made sendmsg system calls,
leading to a free operation associated with a new dump that started
earlier than anticipated (bsc#1017589).
– CVE-2016-9794: Race condition in the snd_pcm_period_elapsed function in
sound/core/pcm_lib.c in the ALSA subsystem in the Linux kernel allowed
local users to cause a denial of service (use-after-free) or possibly
have unspecified other impact via a crafted SNDRV_PCM_TRIGGER_START
command (bsc#1013543).
– CVE-2016-8632: The tipc_msg_build function in net/tipc/msg.c in the
Linux kernel did not validate the relationship between the minimum
fragment length and the maximum packet size, which allowed local users
to gain privileges or cause a denial of service (heap-based buffer
overflow) by leveraging the CAP_NET_ADMIN capability (bsc#1012852).
– CVE-2016-9576: The blk_rq_map_user_iov function in block/blk-map.c in
the Linux kernel did not properly restrict the type of iterator, which
allowed local users to read or write to arbitrary kernel memory
locations or cause a denial of service (use-after-free) by leveraging
access to a /dev/sg device (bsc#1014271).

Patch Instructions:

To install this SUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:

– SUSE Linux Enterprise Live Patching 12:

zypper in -t patch SUSE-SLE-Live-Patching-12-2017-113=1

To bring your system up-to-date, use “zypper patch”.

Package List:

– SUSE Linux Enterprise Live Patching 12 (x86_64):

kgraft-patch-3_12_59-60_45-default-6-2.1
kgraft-patch-3_12_59-60_45-xen-6-2.1

References:

https://www.suse.com/security/cve/CVE-2016-8632.html
https://www.suse.com/security/cve/CVE-2016-9576.html
https://www.suse.com/security/cve/CVE-2016-9794.html
https://www.suse.com/security/cve/CVE-2016-9806.html
https://bugzilla.suse.com/1012852
https://bugzilla.suse.com/1013543
https://bugzilla.suse.com/1013604
https://bugzilla.suse.com/1014271
https://bugzilla.suse.com/1017589


To unsubscribe, e-mail: opensuse-security-announce+unsubscribe@opensuse.org
For additional commands, e-mail: opensuse-security-announce+help@opensuse.org

SUSE Security Update: Security update for Linux Kernel Live Patch 7 for SLE 12 SP1
______________________________________________________________________________

Announcement ID: SUSE-SU-2017:0226-1
Rating: important
References: #1012852 #1013543 #1013604 #1014271
Cross-References: CVE-2016-8632 CVE-2016-9576 CVE-2016-9794

Affected Products:
SUSE Linux Enterprise Live Patching 12
______________________________________________________________________________

An update that solves three vulnerabilities and has one
errata is now available.

Description:

This update for the Linux Kernel 3.12.62-60_62 fixes several issues.

The following security bugs were fixed:
– CVE-2016-9794: Race condition in the snd_pcm_period_elapsed function in
sound/core/pcm_lib.c in the ALSA subsystem in the Linux kernel allowed
local users to cause a denial of service (use-after-free) or possibly
have unspecified other impact via a crafted SNDRV_PCM_TRIGGER_START
command (bsc#1013543).
– CVE-2016-8632: The tipc_msg_build function in net/tipc/msg.c in the
Linux kernel did not validate the relationship between the minimum
fragment length and the maximum packet size, which allowed local users
to gain privileges or cause a denial of service (heap-based buffer
overflow) by leveraging the CAP_NET_ADMIN capability (bsc#1012852).
– CVE-2016-9576: The blk_rq_map_user_iov function in block/blk-map.c in
the Linux kernel did not properly restrict the type of iterator, which
allowed local users to read or write to arbitrary kernel memory
locations or cause a denial of service (use-after-free) by leveraging
access to a /dev/sg device (bsc#1014271).

Patch Instructions:

To install this SUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:

– SUSE Linux Enterprise Live Patching 12:

zypper in -t patch SUSE-SLE-Live-Patching-12-2017-112=1

To bring your system up-to-date, use “zypper patch”.

Package List:

– SUSE Linux Enterprise Live Patching 12 (x86_64):

kgraft-patch-3_12_62-60_62-default-5-2.1
kgraft-patch-3_12_62-60_62-xen-5-2.1

References:

https://www.suse.com/security/cve/CVE-2016-8632.html
https://www.suse.com/security/cve/CVE-2016-9576.html
https://www.suse.com/security/cve/CVE-2016-9794.html
https://bugzilla.suse.com/1012852
https://bugzilla.suse.com/1013543
https://bugzilla.suse.com/1013604
https://bugzilla.suse.com/1014271


To unsubscribe, e-mail: opensuse-security-announce+unsubscribe@opensuse.org
For additional commands, e-mail: opensuse-security-announce+help@opensuse.org
 

SUSE Security Update: Security update for Linux Kernel Live Patch 8 for SLE 12 SP1

______________________________________________________________________________

 

Announcement ID:    SUSE-SU-2017:0278-1

Rating:             important

References:         #1012852 #1013543 #1013604 #1014271 

Cross-References:   CVE-2016-8632 CVE-2016-9576 CVE-2016-9794

                   

Affected Products:

                    SUSE Linux Enterprise Live Patching 12

______________________________________________________________________________

 

   An update that solves three vulnerabilities and has one

   errata is now available.

 

Description:

 

   This update for the Linux Kernel 3.12.62-60_64_8 fixes several issues.

 

   The following security bugs were fixed:

   - CVE-2016-9794: Race condition in the snd_pcm_period_elapsed function in

     sound/core/pcm_lib.c in the ALSA subsystem in the Linux kernel allowed

     local users to cause a denial of service (use-after-free) or possibly

     have unspecified other impact via a crafted SNDRV_PCM_TRIGGER_START

     command (bsc#1013543).

   - CVE-2016-8632: The tipc_msg_build function in net/tipc/msg.c in the

     Linux kernel did not validate the relationship between the minimum

     fragment length and the maximum packet size, which allowed local users

     to gain privileges or cause a denial of service (heap-based buffer

     overflow) by leveraging the CAP_NET_ADMIN capability (bsc#1012852).

   - CVE-2016-9576: The blk_rq_map_user_iov function in block/blk-map.c in

     the Linux kernel did not properly restrict the type of iterator, which

     allowed local users to read or write to arbitrary kernel memory

     locations or cause a denial of service (use-after-free) by leveraging

     access to a /dev/sg device (bsc#1014271).

 

 

Patch Instructions:

 

   To install this SUSE Security Update use YaST online_update.

   Alternatively you can run the command listed for your product:

 

   - SUSE Linux Enterprise Live Patching 12:

 

      zypper in -t patch SUSE-SLE-Live-Patching-12-2017-148=1

 

   To bring your system up-to-date, use “zypper patch”.

 

 

Package List:

 

   - SUSE Linux Enterprise Live Patching 12 (x86_64):

 

      kgraft-patch-3_12_62-60_64_8-default-4-2.1

      kgraft-patch-3_12_62-60_64_8-xen-4-2.1

 

 

References:

 

   https://www.suse.com/security/cve/CVE-2016-8632.html

   https://www.suse.com/security/cve/CVE-2016-9576.html

   https://www.suse.com/security/cve/CVE-2016-9794.html

   https://bugzilla.suse.com/1012852

   https://bugzilla.suse.com/1013543

   https://bugzilla.suse.com/1013604

   https://bugzilla.suse.com/1014271

 

– 

To unsubscribe, e-mail: opensuse-security-announce+unsubscribe@opensuse.org

For additional commands, e-mail: opensuse-security-announce+help@opensuse.org

SUSE Security Update: Security update for Linux Kernel Live Patch 9 for SLE 12 SP1
______________________________________________________________________________

Announcement ID: SUSE-SU-2017:0229-1
Rating: important
References: #1012852 #1013543 #1013604 #1014271
Cross-References: CVE-2016-8632 CVE-2016-9576 CVE-2016-9794

Affected Products:
SUSE Linux Enterprise Live Patching 12
______________________________________________________________________________

An update that solves three vulnerabilities and has one
errata is now available.

Description:

This update for the Linux Kernel 3.12.67-60_64_18 fixes several issues.

The following security bugs were fixed:
– CVE-2016-9794: Race condition in the snd_pcm_period_elapsed function in
sound/core/pcm_lib.c in the ALSA subsystem in the Linux kernel allowed
local users to cause a denial of service (use-after-free) or possibly
have unspecified other impact via a crafted SNDRV_PCM_TRIGGER_START
command (bsc#1013543).
– CVE-2016-8632: The tipc_msg_build function in net/tipc/msg.c in the
Linux kernel did not validate the relationship between the minimum
fragment length and the maximum packet size, which allowed local users
to gain privileges or cause a denial of service (heap-based buffer
overflow) by leveraging the CAP_NET_ADMIN capability (bsc#1012852).
– CVE-2016-9576: The blk_rq_map_user_iov function in block/blk-map.c in
the Linux kernel did not properly restrict the type of iterator, which
allowed local users to read or write to arbitrary kernel memory
locations or cause a denial of service (use-after-free) by leveraging
access to a /dev/sg device (bsc#1014271).

Patch Instructions:

To install this SUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:

– SUSE Linux Enterprise Live Patching 12:

zypper in -t patch SUSE-SLE-Live-Patching-12-2017-111=1

To bring your system up-to-date, use “zypper patch”.

Package List:

– SUSE Linux Enterprise Live Patching 12 (x86_64):

kgraft-patch-3_12_67-60_64_18-default-3-2.1
kgraft-patch-3_12_67-60_64_18-xen-3-2.1

References:

https://www.suse.com/security/cve/CVE-2016-8632.html
https://www.suse.com/security/cve/CVE-2016-9576.html
https://www.suse.com/security/cve/CVE-2016-9794.html
https://bugzilla.suse.com/1012852
https://bugzilla.suse.com/1013543
https://bugzilla.suse.com/1013604
https://bugzilla.suse.com/1014271


To unsubscribe, e-mail: opensuse-security-announce+unsubscribe@opensuse.org
For additional commands, e-mail: opensuse-security-announce+help@opensuse.org

SUSE Security Update: Security update for Linux Kernel Live Patch 10 for SLE 12
______________________________________________________________________________

Announcement ID: SUSE-SU-2017:0247-1
Rating: important
References: #1012852 #1013543 #1013604 #1014271 #1017589

Cross-References: CVE-2016-8632 CVE-2016-9576 CVE-2016-9794
CVE-2016-9806
Affected Products:
SUSE Linux Enterprise Server for SAP 12
SUSE Linux Enterprise Server 12-LTSS
______________________________________________________________________________

An update that solves four vulnerabilities and has one
errata is now available.

Description:

This update for the Linux Kernel 3.12.51-52_34 fixes several issues.

The following security bugs were fixed:
– CVE-2016-9806: Race condition in the netlink_dump function in
net/netlink/af_netlink.c in the Linux kernel allowed local users to
cause a denial of service (double free) or possibly have unspecified
other impact via a crafted application that made sendmsg system calls,
leading to a free operation associated with a new dump that started
earlier than anticipated (bsc#1017589).
– CVE-2016-9794: Race condition in the snd_pcm_period_elapsed function in
sound/core/pcm_lib.c in the ALSA subsystem in the Linux kernel allowed
local users to cause a denial of service (use-after-free) or possibly
have unspecified other impact via a crafted SNDRV_PCM_TRIGGER_START
command (bsc#1013543).
– CVE-2016-8632: The tipc_msg_build function in net/tipc/msg.c in the
Linux kernel did not validate the relationship between the minimum
fragment length and the maximum packet size, which allowed local users
to gain privileges or cause a denial of service (heap-based buffer
overflow) by leveraging the CAP_NET_ADMIN capability (bsc#1012852).
– CVE-2016-9576: The blk_rq_map_user_iov function in block/blk-map.c in
the Linux kernel did not properly restrict the type of iterator, which
allowed local users to read or write to arbitrary kernel memory
locations or cause a denial of service (use-after-free) by leveraging
access to a /dev/sg device (bsc#1014271).

Patch Instructions:

To install this SUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:

– SUSE Linux Enterprise Server for SAP 12:

zypper in -t patch SUSE-SLE-SAP-12-2017-131=1

– SUSE Linux Enterprise Server 12-LTSS:

zypper in -t patch SUSE-SLE-SERVER-12-2017-131=1

To bring your system up-to-date, use “zypper patch”.

Package List:

– SUSE Linux Enterprise Server for SAP 12 (x86_64):

kgraft-patch-3_12_51-52_34-default-8-2.1
kgraft-patch-3_12_51-52_34-xen-8-2.1

– SUSE Linux Enterprise Server 12-LTSS (x86_64):

kgraft-patch-3_12_51-52_34-default-8-2.1
kgraft-patch-3_12_51-52_34-xen-8-2.1

References:

https://www.suse.com/security/cve/CVE-2016-8632.html
https://www.suse.com/security/cve/CVE-2016-9576.html
https://www.suse.com/security/cve/CVE-2016-9794.html
https://www.suse.com/security/cve/CVE-2016-9806.html
https://bugzilla.suse.com/1012852
https://bugzilla.suse.com/1013543
https://bugzilla.suse.com/1013604
https://bugzilla.suse.com/1014271
https://bugzilla.suse.com/1017589


To unsubscribe, e-mail: opensuse-security-announce+unsubscribe@opensuse.org
For additional commands, e-mail: opensuse-security-announce+help@opensuse.org

 

 SUSE Security Update: Security update for Linux Kernel Live Patch 10 for SLE 12 SP1

______________________________________________________________________________

 

Announcement ID:    SUSE-SU-2017:0294-1

Rating:             important

References:         #1013543 #1013604 #1014271 

Cross-References:   CVE-2016-9576 CVE-2016-9794

Affected Products:

                    SUSE Linux Enterprise Live Patching 12

______________________________________________________________________________

 

   An update that solves two vulnerabilities and has one

   errata is now available.

 

Description:

 

   This update for the Linux Kernel 3.12.67-60_64_21 fixes several issues.

 

   The following security bugs were fixed:

   - CVE-2016-9794: Race condition in the snd_pcm_period_elapsed function in

     sound/core/pcm_lib.c in the ALSA subsystem in the Linux kernel allowed

     local users to cause a denial of service (use-after-free) or possibly

     have unspecified other impact via a crafted SNDRV_PCM_TRIGGER_START

     command (bsc#1013543).

   - CVE-2016-9576: The blk_rq_map_user_iov function in block/blk-map.c in

     the Linux kernel did not properly restrict the type of iterator, which

     allowed local users to read or write to arbitrary kernel memory

     locations or cause a denial of service (use-after-free) by leveraging

     access to a /dev/sg device (bsc#1014271).

 

 

Patch Instructions:

 

   To install this SUSE Security Update use YaST online_update.

   Alternatively you can run the command listed for your product:

 

   - SUSE Linux Enterprise Live Patching 12:

 

      zypper in -t patch SUSE-SLE-Live-Patching-12-2017-155=1

 

   To bring your system up-to-date, use “zypper patch”.

 

 

Package List:

 

   - SUSE Linux Enterprise Live Patching 12 (x86_64):

 

      kgraft-patch-3_12_67-60_64_21-default-2-2.1

      kgraft-patch-3_12_67-60_64_21-xen-2-2.1

 

 

References:

 

   https://www.suse.com/security/cve/CVE-2016-9576.html

   https://www.suse.com/security/cve/CVE-2016-9794.html

   https://bugzilla.suse.com/1013543

   https://bugzilla.suse.com/1013604

   https://bugzilla.suse.com/1014271

 

– 

To unsubscribe, e-mail: opensuse-security-announce+unsubscribe@opensuse.org

For additional commands, e-mail: opensuse-security-announce+help@opensuse.org

 

SUSE Security Update: Security update for Linux Kernel Live Patch 11 for SLE 12

______________________________________________________________________________

 

Announcement ID:    SUSE-SU-2017:0268-1

Rating:             important

References:         #1012852 #1013543 #1013604 #1014271 #1017589 

                    

Cross-References:   CVE-2016-8632 CVE-2016-9576 CVE-2016-9794

                    CVE-2016-9806

Affected Products:

                    SUSE Linux Enterprise Server for SAP 12

                    SUSE Linux Enterprise Server 12-LTSS

______________________________________________________________________________

 

   An update that solves four vulnerabilities and has one

   errata is now available.

 

Description:

 

   This update for the Linux Kernel 3.12.51-52_39 fixes several issues.

 

   The following security bugs were fixed:

   - CVE-2016-9806: Race condition in the netlink_dump function in

     net/netlink/af_netlink.c in the Linux kernel allowed local users to

     cause a denial of service (double free) or possibly have unspecified

     other impact via a crafted application that made sendmsg system calls,

     leading to a free operation associated with a new dump that started

     earlier than anticipated (bsc#1017589).

   - CVE-2016-9794: Race condition in the snd_pcm_period_elapsed function in

     sound/core/pcm_lib.c in the ALSA subsystem in the Linux kernel allowed

     local users to cause a denial of service (use-after-free) or possibly

     have unspecified other impact via a crafted SNDRV_PCM_TRIGGER_START

     command (bsc#1013543).

   - CVE-2016-8632: The tipc_msg_build function in net/tipc/msg.c in the

     Linux kernel did not validate the relationship between the minimum

     fragment length and the maximum packet size, which allowed local users

     to gain privileges or cause a denial of service (heap-based buffer

     overflow) by leveraging the CAP_NET_ADMIN capability (bsc#1012852).

   - CVE-2016-9576: The blk_rq_map_user_iov function in block/blk-map.c in

     the Linux kernel did not properly restrict the type of iterator, which

     allowed local users to read or write to arbitrary kernel memory

     locations or cause a denial of service (use-after-free) by leveraging

     access to a /dev/sg device (bsc#1014271).

 

 

Patch Instructions:

 

   To install this SUSE Security Update use YaST online_update.

   Alternatively you can run the command listed for your product:

 

   - SUSE Linux Enterprise Server for SAP 12:

 

      zypper in -t patch SUSE-SLE-SAP-12-2017-141=1

 

   - SUSE Linux Enterprise Server 12-LTSS:

 

      zypper in -t patch SUSE-SLE-SERVER-12-2017-141=1

 

   To bring your system up-to-date, use “zypper patch”.

 

 

Package List:

 

   - SUSE Linux Enterprise Server for SAP 12 (x86_64):

 

      kgraft-patch-3_12_51-52_39-default-7-2.1

      kgraft-patch-3_12_51-52_39-xen-7-2.1

 

   - SUSE Linux Enterprise Server 12-LTSS (x86_64):

 

      kgraft-patch-3_12_51-52_39-default-7-2.1

      kgraft-patch-3_12_51-52_39-xen-7-2.1

 

 

References:

 

   https://www.suse.com/security/cve/CVE-2016-8632.html

   https://www.suse.com/security/cve/CVE-2016-9576.html

   https://www.suse.com/security/cve/CVE-2016-9794.html

   https://www.suse.com/security/cve/CVE-2016-9806.html

   https://bugzilla.suse.com/1012852

   https://bugzilla.suse.com/1013543

   https://bugzilla.suse.com/1013604

   https://bugzilla.suse.com/1014271

   https://bugzilla.suse.com/1017589

 

– 

To unsubscribe, e-mail: opensuse-security-announce+unsubscribe@opensuse.org

For additional commands, e-mail: opensuse-security-announce+help@opensuse.org

SUSE Security Update: Security update for Linux Kernel Live Patch 12 for SLE 12
______________________________________________________________________________

Announcement ID: SUSE-SU-2017:0244-1
Rating: important
References: #1012852 #1013543 #1013604 #1014271 #1017589

Cross-References: CVE-2016-8632 CVE-2016-9576 CVE-2016-9794
CVE-2016-9806
Affected Products:
SUSE Linux Enterprise Server for SAP 12
SUSE Linux Enterprise Server 12-LTSS
______________________________________________________________________________

An update that solves four vulnerabilities and has one
errata is now available.

Description:

This update for the Linux Kernel 3.12.55-52_42 fixes several issues.

The following security bugs were fixed:
– CVE-2016-9806: Race condition in the netlink_dump function in
net/netlink/af_netlink.c in the Linux kernel allowed local users to
cause a denial of service (double free) or possibly have unspecified
other impact via a crafted application that made sendmsg system calls,
leading to a free operation associated with a new dump that started
earlier than anticipated (bsc#1017589).
– CVE-2016-9794: Race condition in the snd_pcm_period_elapsed function in
sound/core/pcm_lib.c in the ALSA subsystem in the Linux kernel allowed
local users to cause a denial of service (use-after-free) or possibly
have unspecified other impact via a crafted SNDRV_PCM_TRIGGER_START
command (bsc#1013543).
– CVE-2016-8632: The tipc_msg_build function in net/tipc/msg.c in the
Linux kernel did not validate the relationship between the minimum
fragment length and the maximum packet size, which allowed local users
to gain privileges or cause a denial of service (heap-based buffer
overflow) by leveraging the CAP_NET_ADMIN capability (bsc#1012852).
– CVE-2016-9576: The blk_rq_map_user_iov function in block/blk-map.c in
the Linux kernel did not properly restrict the type of iterator, which
allowed local users to read or write to arbitrary kernel memory
locations or cause a denial of service (use-after-free) by leveraging
access to a /dev/sg device (bsc#1014271).

Patch Instructions:

To install this SUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:

– SUSE Linux Enterprise Server for SAP 12:

zypper in -t patch SUSE-SLE-SAP-12-2017-130=1

– SUSE Linux Enterprise Server 12-LTSS:

zypper in -t patch SUSE-SLE-SERVER-12-2017-130=1

To bring your system up-to-date, use “zypper patch”.

Package List:

– SUSE Linux Enterprise Server for SAP 12 (x86_64):

kgraft-patch-3_12_55-52_42-default-5-2.1
kgraft-patch-3_12_55-52_42-xen-5-2.1

– SUSE Linux Enterprise Server 12-LTSS (x86_64):

kgraft-patch-3_12_55-52_42-default-5-2.1
kgraft-patch-3_12_55-52_42-xen-5-2.1

References:

https://www.suse.com/security/cve/CVE-2016-8632.html
https://www.suse.com/security/cve/CVE-2016-9576.html
https://www.suse.com/security/cve/CVE-2016-9794.html
https://www.suse.com/security/cve/CVE-2016-9806.html
https://bugzilla.suse.com/1012852
https://bugzilla.suse.com/1013543
https://bugzilla.suse.com/1013604
https://bugzilla.suse.com/1014271
https://bugzilla.suse.com/1017589


To unsubscribe, e-mail: opensuse-security-announce+unsubscribe@opensuse.org
For additional commands, e-mail: opensuse-security-announce+help@opensuse.org

SUSE Security Update: Security update for Linux Kernel Live Patch 13 for SLE 12
______________________________________________________________________________

Announcement ID: SUSE-SU-2017:0249-1
Rating: important
References: #1012852 #1013543 #1013604 #1014271 #1017589

Cross-References: CVE-2016-8632 CVE-2016-9576 CVE-2016-9794
CVE-2016-9806
Affected Products:
SUSE Linux Enterprise Server for SAP 12
SUSE Linux Enterprise Server 12-LTSS
______________________________________________________________________________

An update that solves four vulnerabilities and has one
errata is now available.

Description:

This update for the Linux Kernel 3.12.55-52_45 fixes several issues.

The following security bugs were fixed:
– CVE-2016-9806: Race condition in the netlink_dump function in
net/netlink/af_netlink.c in the Linux kernel allowed local users to
cause a denial of service (double free) or possibly have unspecified
other impact via a crafted application that made sendmsg system calls,
leading to a free operation associated with a new dump that started
earlier than anticipated (bsc#1017589).
– CVE-2016-9794: Race condition in the snd_pcm_period_elapsed function in
sound/core/pcm_lib.c in the ALSA subsystem in the Linux kernel allowed
local users to cause a denial of service (use-after-free) or possibly
have unspecified other impact via a crafted SNDRV_PCM_TRIGGER_START
command (bsc#1013543).
– CVE-2016-8632: The tipc_msg_build function in net/tipc/msg.c in the
Linux kernel did not validate the relationship between the minimum
fragment length and the maximum packet size, which allowed local users
to gain privileges or cause a denial of service (heap-based buffer
overflow) by leveraging the CAP_NET_ADMIN capability (bsc#1012852).
– CVE-2016-9576: The blk_rq_map_user_iov function in block/blk-map.c in
the Linux kernel did not properly restrict the type of iterator, which
allowed local users to read or write to arbitrary kernel memory
locations or cause a denial of service (use-after-free) by leveraging
access to a /dev/sg device (bsc#1014271).

Patch Instructions:

To install this SUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:

– SUSE Linux Enterprise Server for SAP 12:

zypper in -t patch SUSE-SLE-SAP-12-2017-129=1

– SUSE Linux Enterprise Server 12-LTSS:

zypper in -t patch SUSE-SLE-SERVER-12-2017-129=1

To bring your system up-to-date, use “zypper patch”.

Package List:

– SUSE Linux Enterprise Server for SAP 12 (x86_64):

kgraft-patch-3_12_55-52_45-default-5-2.1
kgraft-patch-3_12_55-52_45-xen-5-2.1

– SUSE Linux Enterprise Server 12-LTSS (x86_64):

kgraft-patch-3_12_55-52_45-default-5-2.1
kgraft-patch-3_12_55-52_45-xen-5-2.1

References:

https://www.suse.com/security/cve/CVE-2016-8632.html
https://www.suse.com/security/cve/CVE-2016-9576.html
https://www.suse.com/security/cve/CVE-2016-9794.html
https://www.suse.com/security/cve/CVE-2016-9806.html
https://bugzilla.suse.com/1012852
https://bugzilla.suse.com/1013543
https://bugzilla.suse.com/1013604
https://bugzilla.suse.com/1014271
https://bugzilla.suse.com/1017589


To unsubscribe, e-mail: opensuse-security-announce+unsubscribe@opensuse.org
For additional commands, e-mail: opensuse-security-announce+help@opensuse.org

SUSE Security Update: Security update for Linux Kernel Live Patch 14 for SLE 12
______________________________________________________________________________

Announcement ID: SUSE-SU-2017:0248-1
Rating: important
References: #1012852 #1013543 #1013604 #1014271 #1017589

Cross-References: CVE-2016-8632 CVE-2016-9576 CVE-2016-9794
CVE-2016-9806
Affected Products:
SUSE Linux Enterprise Server for SAP 12
SUSE Linux Enterprise Server 12-LTSS
______________________________________________________________________________

An update that solves four vulnerabilities and has one
errata is now available.

Description:

This update for the Linux Kernel 3.12.60-52_49 fixes several issues.

The following security bugs were fixed:
– CVE-2016-9806: Race condition in the netlink_dump function in
net/netlink/af_netlink.c in the Linux kernel allowed local users to
cause a denial of service (double free) or possibly have unspecified
other impact via a crafted application that made sendmsg system calls,
leading to a free operation associated with a new dump that started
earlier than anticipated (bsc#1017589).
– CVE-2016-9794: Race condition in the snd_pcm_period_elapsed function in
sound/core/pcm_lib.c in the ALSA subsystem in the Linux kernel allowed
local users to cause a denial of service (use-after-free) or possibly
have unspecified other impact via a crafted SNDRV_PCM_TRIGGER_START
command (bsc#1013543).
– CVE-2016-8632: The tipc_msg_build function in net/tipc/msg.c in the
Linux kernel did not validate the relationship between the minimum
fragment length and the maximum packet size, which allowed local users
to gain privileges or cause a denial of service (heap-based buffer
overflow) by leveraging the CAP_NET_ADMIN capability (bsc#1012852).
– CVE-2016-9576: The blk_rq_map_user_iov function in block/blk-map.c in
the Linux kernel did not properly restrict the type of iterator, which
allowed local users to read or write to arbitrary kernel memory
locations or cause a denial of service (use-after-free) by leveraging
access to a /dev/sg device (bsc#1014271).

Patch Instructions:

To install this SUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:

– SUSE Linux Enterprise Server for SAP 12:

zypper in -t patch SUSE-SLE-SAP-12-2017-128=1

– SUSE Linux Enterprise Server 12-LTSS:

zypper in -t patch SUSE-SLE-SERVER-12-2017-128=1

To bring your system up-to-date, use “zypper patch”.

Package List:

– SUSE Linux Enterprise Server for SAP 12 (x86_64):

kgraft-patch-3_12_60-52_49-default-5-2.1
kgraft-patch-3_12_60-52_49-xen-5-2.1

– SUSE Linux Enterprise Server 12-LTSS (x86_64):

kgraft-patch-3_12_60-52_49-default-5-2.1
kgraft-patch-3_12_60-52_49-xen-5-2.1

References:

https://www.suse.com/security/cve/CVE-2016-8632.html
https://www.suse.com/security/cve/CVE-2016-9576.html
https://www.suse.com/security/cve/CVE-2016-9794.html
https://www.suse.com/security/cve/CVE-2016-9806.html
https://bugzilla.suse.com/1012852
https://bugzilla.suse.com/1013543
https://bugzilla.suse.com/1013604
https://bugzilla.suse.com/1014271
https://bugzilla.suse.com/1017589


To unsubscribe, e-mail: opensuse-security-announce+unsubscribe@opensuse.org
For additional commands, e-mail: opensuse-security-announce+help@opensuse.org

SUSE Security Update: Security update for Linux Kernel Live Patch 15 for SLE 12
______________________________________________________________________________

Announcement ID: SUSE-SU-2017:0246-1
Rating: important
References: #1012852 #1013543 #1013604 #1014271 #1017589

Cross-References: CVE-2016-8632 CVE-2016-9576 CVE-2016-9794
CVE-2016-9806
Affected Products:
SUSE Linux Enterprise Server for SAP 12
SUSE Linux Enterprise Server 12-LTSS
______________________________________________________________________________

An update that solves four vulnerabilities and has one
errata is now available.

Description:

This update for the Linux Kernel 3.12.60-52_54 fixes several issues.

The following security bugs were fixed:
– CVE-2016-9806: Race condition in the netlink_dump function in
net/netlink/af_netlink.c in the Linux kernel allowed local users to
cause a denial of service (double free) or possibly have unspecified
other impact via a crafted application that made sendmsg system calls,
leading to a free operation associated with a new dump that started
earlier than anticipated (bsc#1017589).
– CVE-2016-9794: Race condition in the snd_pcm_period_elapsed function in
sound/core/pcm_lib.c in the ALSA subsystem in the Linux kernel allowed
local users to cause a denial of service (use-after-free) or possibly
have unspecified other impact via a crafted SNDRV_PCM_TRIGGER_START
command (bsc#1013543).
– CVE-2016-8632: The tipc_msg_build function in net/tipc/msg.c in the
Linux kernel did not validate the relationship between the minimum
fragment length and the maximum packet size, which allowed local users
to gain privileges or cause a denial of service (heap-based buffer
overflow) by leveraging the CAP_NET_ADMIN capability (bsc#1012852).
– CVE-2016-9576: The blk_rq_map_user_iov function in block/blk-map.c in
the Linux kernel did not properly restrict the type of iterator, which
allowed local users to read or write to arbitrary kernel memory
locations or cause a denial of service (use-after-free) by leveraging
access to a /dev/sg device (bsc#1014271).

Patch Instructions:

To install this SUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:

– SUSE Linux Enterprise Server for SAP 12:

zypper in -t patch SUSE-SLE-SAP-12-2017-127=1

– SUSE Linux Enterprise Server 12-LTSS:

zypper in -t patch SUSE-SLE-SERVER-12-2017-127=1

To bring your system up-to-date, use “zypper patch”.

Package List:

– SUSE Linux Enterprise Server for SAP 12 (x86_64):

kgraft-patch-3_12_60-52_54-default-5-2.1
kgraft-patch-3_12_60-52_54-xen-5-2.1

– SUSE Linux Enterprise Server 12-LTSS (x86_64):

kgraft-patch-3_12_60-52_54-default-5-2.1
kgraft-patch-3_12_60-52_54-xen-5-2.1

References:

https://www.suse.com/security/cve/CVE-2016-8632.html
https://www.suse.com/security/cve/CVE-2016-9576.html
https://www.suse.com/security/cve/CVE-2016-9794.html
https://www.suse.com/security/cve/CVE-2016-9806.html
https://bugzilla.suse.com/1012852
https://bugzilla.suse.com/1013543
https://bugzilla.suse.com/1013604
https://bugzilla.suse.com/1014271
https://bugzilla.suse.com/1017589


To unsubscribe, e-mail: opensuse-security-announce+unsubscribe@opensuse.org
For additional commands, e-mail: opensuse-security-announce+help@opensuse.org

SUSE Security Update: Security update for Linux Kernel Live Patch 16 for SLE 12
______________________________________________________________________________

Announcement ID: SUSE-SU-2017:0245-1
Rating: important
References: #1012852 #1013543 #1013604 #1014271 #1017589

Cross-References: CVE-2016-8632 CVE-2016-9576 CVE-2016-9794
CVE-2016-9806
Affected Products:
SUSE Linux Enterprise Server for SAP 12
SUSE Linux Enterprise Server 12-LTSS
______________________________________________________________________________

An update that solves four vulnerabilities and has one
errata is now available.

Description:

This update for the Linux Kernel 3.12.60-52_57 fixes several issues.

The following security bugs were fixed:
– CVE-2016-9806: Race condition in the netlink_dump function in
net/netlink/af_netlink.c in the Linux kernel allowed local users to
cause a denial of service (double free) or possibly have unspecified
other impact via a crafted application that made sendmsg system calls,
leading to a free operation associated with a new dump that started
earlier than anticipated (bsc#1017589).
– CVE-2016-9794: Race condition in the snd_pcm_period_elapsed function in
sound/core/pcm_lib.c in the ALSA subsystem in the Linux kernel allowed
local users to cause a denial of service (use-after-free) or possibly
have unspecified other impact via a crafted SNDRV_PCM_TRIGGER_START
command (bsc#1013543).
– CVE-2016-8632: The tipc_msg_build function in net/tipc/msg.c in the
Linux kernel did not validate the relationship between the minimum
fragment length and the maximum packet size, which allowed local users
to gain privileges or cause a denial of service (heap-based buffer
overflow) by leveraging the CAP_NET_ADMIN capability (bsc#1012852).
– CVE-2016-9576: The blk_rq_map_user_iov function in block/blk-map.c in
the Linux kernel did not properly restrict the type of iterator, which
allowed local users to read or write to arbitrary kernel memory
locations or cause a denial of service (use-after-free) by leveraging
access to a /dev/sg device (bsc#1014271).

Patch Instructions:

To install this SUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:

– SUSE Linux Enterprise Server for SAP 12:

zypper in -t patch SUSE-SLE-SAP-12-2017-126=1

– SUSE Linux Enterprise Server 12-LTSS:

zypper in -t patch SUSE-SLE-SERVER-12-2017-126=1

To bring your system up-to-date, use “zypper patch”.

Package List:

– SUSE Linux Enterprise Server for SAP 12 (x86_64):

kgraft-patch-3_12_60-52_57-default-3-2.1
kgraft-patch-3_12_60-52_57-xen-3-2.1

– SUSE Linux Enterprise Server 12-LTSS (x86_64):

kgraft-patch-3_12_60-52_57-default-3-2.1
kgraft-patch-3_12_60-52_57-xen-3-2.1

References:

https://www.suse.com/security/cve/CVE-2016-8632.html
https://www.suse.com/security/cve/CVE-2016-9576.html
https://www.suse.com/security/cve/CVE-2016-9794.html
https://www.suse.com/security/cve/CVE-2016-9806.html
https://bugzilla.suse.com/1012852
https://bugzilla.suse.com/1013543
https://bugzilla.suse.com/1013604
https://bugzilla.suse.com/1014271
https://bugzilla.suse.com/1017589


To unsubscribe, e-mail: opensuse-security-announce+unsubscribe@opensuse.org
For additional commands, e-mail: opensuse-security-announce+help@opensuse.org

 

SUSE Security Update: Security update for Linux Kernel Live Patch 17 for SLE 12

______________________________________________________________________________

 

Announcement ID:    SUSE-SU-2017:0267-1

Rating:             important

References:         #1013543 #1013604 #1014271 #1017589 

Cross-References:   CVE-2016-9576 CVE-2016-9794 CVE-2016-9806

                   

Affected Products:

                    SUSE Linux Enterprise Server for SAP 12

                    SUSE Linux Enterprise Server 12-LTSS

______________________________________________________________________________

 

   An update that solves three vulnerabilities and has one

   errata is now available.

 

Description:

 

   This update for the Linux Kernel 3.12.60-52_60 fixes several issues.

 

   The following security bugs were fixed:

   - CVE-2016-9806: Race condition in the netlink_dump function in

     net/netlink/af_netlink.c in the Linux kernel allowed local users to

     cause a denial of service (double free) or possibly have unspecified

     other impact via a crafted application that made sendmsg system calls,

     leading to a free operation associated with a new dump that started

     earlier than anticipated (bsc#1017589).

   - CVE-2016-9794: Race condition in the snd_pcm_period_elapsed function in

     sound/core/pcm_lib.c in the ALSA subsystem in the Linux kernel allowed

     local users to cause a denial of service (use-after-free) or possibly

     have unspecified other impact via a crafted SNDRV_PCM_TRIGGER_START

     command (bsc#1013543).

   - CVE-2016-9576: The blk_rq_map_user_iov function in block/blk-map.c in

     the Linux kernel did not properly restrict the type of iterator, which

     allowed local users to read or write to arbitrary kernel memory

     locations or cause a denial of service (use-after-free) by leveraging

     access to a /dev/sg device (bsc#1014271).

 

 

Patch Instructions:

 

   To install this SUSE Security Update use YaST online_update.

   Alternatively you can run the command listed for your product:

 

   - SUSE Linux Enterprise Server for SAP 12:

 

      zypper in -t patch SUSE-SLE-SAP-12-2017-142=1

 

   - SUSE Linux Enterprise Server 12-LTSS:

 

      zypper in -t patch SUSE-SLE-SERVER-12-2017-142=1

 

   To bring your system up-to-date, use “zypper patch”.

 

 

Package List:

 

   - SUSE Linux Enterprise Server for SAP 12 (x86_64):

 

      kgraft-patch-3_12_60-52_60-default-2-2.1

      kgraft-patch-3_12_60-52_60-xen-2-2.1

 

   - SUSE Linux Enterprise Server 12-LTSS (x86_64):

 

      kgraft-patch-3_12_60-52_60-default-2-2.1

      kgraft-patch-3_12_60-52_60-xen-2-2.1

 

 

References:

 

   https://www.suse.com/security/cve/CVE-2016-9576.html

   https://www.suse.com/security/cve/CVE-2016-9794.html

   https://www.suse.com/security/cve/CVE-2016-9806.html

   https://bugzilla.suse.com/1013543

   https://bugzilla.suse.com/1013604

   https://bugzilla.suse.com/1014271

   https://bugzilla.suse.com/1017589

 

– 

To unsubscribe, e-mail: opensuse-security-announce+unsubscribe@opensuse.org

For additional commands, e-mail: opensuse-security-announce+help@opensuse.org

 

SUSE Security Update: Security update for Linux Kernel Live Patch 18 for SLE 12

______________________________________________________________________________

 

Announcement ID:    SUSE-SU-2017:0303-1

Rating:             important

References:         #1017589 

Cross-References:   CVE-2016-9806

Affected Products:

                    SUSE Linux Enterprise Server for SAP 12

                    SUSE Linux Enterprise Server 12-LTSS

______________________________________________________________________________

 

   An update that fixes one vulnerability is now available.

 

Description:

 

   This update for the Linux Kernel 3.12.60-52_63 fixes several issues.

 

   The following security bugs were fixed:

   - CVE-2016-9806: Race condition in the netlink_dump function in

     net/netlink/af_netlink.c in the Linux kernel allowed local users to

     cause a denial of service (double free) or possibly have unspecified

     other impact via a crafted application that made sendmsg system calls,

     leading to a free operation associated with a new dump that started

     earlier than anticipated (bsc#1017589).

 

 

Patch Instructions:

 

   To install this SUSE Security Update use YaST online_update.

   Alternatively you can run the command listed for your product:

 

   - SUSE Linux Enterprise Server for SAP 12:

 

      zypper in -t patch SUSE-SLE-SAP-12-2017-161=1

 

   - SUSE Linux Enterprise Server 12-LTSS:

 

      zypper in -t patch SUSE-SLE-SERVER-12-2017-161=1

 

   To bring your system up-to-date, use “zypper patch”.

 

 

Package List:

 

   - SUSE Linux Enterprise Server for SAP 12 (x86_64):

 

      kgraft-patch-3_12_60-52_63-default-2-2.1

      kgraft-patch-3_12_60-52_63-xen-2-2.1

 

   - SUSE Linux Enterprise Server 12-LTSS (x86_64):

 

      kgraft-patch-3_12_60-52_63-default-2-2.1

      kgraft-patch-3_12_60-52_63-xen-2-2.1

 

 

References:

 

   https://www.suse.com/security/cve/CVE-2016-9806.html

   https://bugzilla.suse.com/1017589

 

– 

To unsubscribe, e-mail: opensuse-security-announce+unsubscribe@opensuse.org

For additional commands, e-mail: opensuse-security-announce+help@opensuse.org

Top
More in Preporuke
Sigurnosni nedostaci programskog paketa mysql-5.5

Otkriveni su sigurnosni nedostaci u programskom paketu mysql-5.5 za operacijski sustav Debian. Otkriveni nedostaci potencijalnim napadačima omogućuju stjecanje uvećanih privilegija....

Close