gpp_maybe
Security update for the linux kernel (live patch 4 for sle 12 sp3)
SUSE-SLE-Live-Patching-12-SP3-2018-242
This update for the Linux Kernel 4.4.90-6_12 fixes several issues. The following security issues were fixed: - CVE-2017-17712: The raw_sendmsg() function had a race condition that lead to uninitialized stack pointer usage. This allowed a local user to execute code and gain privileges (bsc#1073230). - CVE-2017-16939: The XFRM dump policy implementation allowed local users to gain privileges or cause a denial of service (use-after-free) via a crafted SO_RCVBUF setsockopt system call in conjunction with XFRM_MSG_GETPOLICY Netlink messages (bsc#1069708).
-
Release DateFeb 1 2018
-
References
-
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Live Patching 12.3 x86_64
-
Packageskgraft-patch-4_4_92-6_18-default
Kgraft patch modulekgraft-patch-SLE12-SP3_Update_43-2.1 lock rpm
Kgraft patch module3-2.1 lock src