gpp_maybe Security update for the linux kernel (live patch 2 for sle 12 sp3)
SUSE-SLE-Live-Patching-12-SP3-2018-241


This update for the Linux Kernel 4.4.82-6_6 fixes several issues. The following security issues were fixed: - CVE-2017-17712: The raw_sendmsg() function had a race condition that lead to uninitialized stack pointer usage. This allowed a local user to execute code and gain privileges (bsc#1073230). - CVE-2017-16939: The XFRM dump policy implementation allowed local users to gain privileges or cause a denial of service (use-after-free) via a crafted SO_RCVBUF setsockopt system call in conjunction with XFRM_MSG_GETPOLICY Netlink messages (bsc#1069708).


cloud_download Downloads

SUSE Linux Enterprise Live Patching 12.3 x86_64