gpp_maybe
Security update for the linux kernel (live patch 7 for sle 12 sp2)
SUSE-SLE-Live-Patching-12-2018-196
This update for the Linux Kernel 4.4.59-92_17 fixes several issues. The following security issues were fixed: - CVE-2017-17712: The raw_sendmsg() function had a race condition that lead to uninitialized stack pointer usage. This allowed a local user to execute code and gain privileges (bsc#1073230). - CVE-2017-16939: The XFRM dump policy implementation allowed local users to gain privileges or cause a denial of service (use-after-free) via a crafted SO_RCVBUF setsockopt system call in conjunction with XFRM_MSG_GETPOLICY Netlink messages (bsc#1069708).
-
Release DateJan 29 2018
-
References
-
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Live Patching 12 x86_64
-
Packageskgraft-patch-4_4_59-92_17-default
Kgraft patch modulekgraft-patch-SLE12-SP2_Update_78-2.1 lock rpm
Kgraft patch module8-2.1 lock src