gpp_maybe
Security update for the linux kernel (live patch 11 for sle 12 sp2)
SUSE-SLE-Live-Patching-12-2018-199
This update for the Linux Kernel 4.4.74-92_32 fixes several issues. The following security issues were fixed: - CVE-2017-17712: The raw_sendmsg() function had a race condition that lead to uninitialized stack pointer usage. This allowed a local user to execute code and gain privileges (bsc#1073230). - CVE-2017-16939: The XFRM dump policy implementation allowed local users to gain privileges or cause a denial of service (use-after-free) via a crafted SO_RCVBUF setsockopt system call in conjunction with XFRM_MSG_GETPOLICY Netlink messages (bsc#1069708).
-
Release DateJan 30 2018
-
References
-
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Live Patching 12 x86_64
-
Packageskgraft-patch-4_4_74-92_32-default
Kgraft patch modulekgraft-patch-SLE12-SP2_Update_116-2.1 lock rpm
Kgraft patch module6-2.1 lock src