gpp_maybe
Security update for the linux kernel (live patch 2 for sle 15 sp1)
SUSE-SLE-Module-Live-Patching-15-SP1-2020-1654
This update for the Linux Kernel 4.12.14-197_7 fixes several issues. The following security issues were fixed: - CVE-2019-13233: Fixed a race condition between modify_ldt() and a #BR exception for an MPX bounds violation (bsc#1144502). - CVE-2020-10757: Fixed an issue where remaping hugepage DAX to anon mmap could have caused user PTE access (bsc#1172437). - CVE-2019-15666: Fixed an out of bounds read __xfrm_policy_unlink, which could have led to denial of service (bsc#1172140). - CVE-2018-1000199: Fixed a potential local code execution via ptrace (bsc#1171746).
-
Release DateJun 18 2020
-
ReferencesBugzilla: 1144502, 1171746, 1172140, 1172437
CVEs: CVE-2018-1000199, CVE-2019-15666, CVE-2020-10757, CVE-2020-13233 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Live Patching 15.1 ppc64le
-
Packageskernel-livepatch-4_12_14-197_7-default
Kernel live patch modulekernel-livepatch-SLE15-SP1_Update_210-2.1 lock rpm
Kernel live patch module10-2.1 lock src
SUSE Linux Enterprise Live Patching 15.1 x86_64
-
Packageskernel-livepatch-4_12_14-197_7-default
Kernel live patch modulekernel-livepatch-SLE15-SP1_Update_210-2.1 lock rpm
Kernel live patch module10-2.1 lock src