gpp_maybe
Security update for the linux kernel (live patch 27 for sle 12 sp5)
SUSE-SLE-Live-Patching-12-SP5-2022-3044
This update for the Linux Kernel 4.12.14-122_106 fixes several issues. The following security issues were fixed: - CVE-2020-36516: Fixed an off-path attack via mixed IPID assignment method with the hash-based IPID assignment policy to inject data into a victim's TCP session or terminate that session (bsc#1196867). - CVE-2022-36946: Fixed a remote denial of service attack inside nfqnl_mangle in net/netfilter/nfnetlink_queue.c, in the case of an nf_queue verdict with a one-byte nfta_payload attribute, an skb_pull can encounter a negative length (bsc#1201941).
-
Release DateSep 5 2022
-
References
-
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Live Patching 12.5 x86_64
-
Packageskgraft-patch-4_12_14-122_106-default
Kgraft patch modulekgraft-patch-SLE12-SP5_Update_2712-2.3 lock rpm
Kgraft patch module12-2.3 lock src
SUSE Linux Enterprise Live Patching 12.5 ppc64le
-
Packageskgraft-patch-4_12_14-122_106-default
Kgraft patch modulekgraft-patch-SLE12-SP5_Update_2712-2.3 lock rpm
Kgraft patch module12-2.3 lock src
SUSE Linux Enterprise Live Patching 12.5 s390x
-
Packageskgraft-patch-4_12_14-122_106-default
Kgraft patch modulekgraft-patch-SLE12-SP5_Update_2712-2.3 lock rpm
Kgraft patch module12-2.3 lock src