SUSE-SU-2017:3225-1 -- SLES kernelID: oval:org.secpod.oval:def:89044740 | Date: (C)2021-07-20 (M)2024-04-17 |
Class: PATCH | Family: unix |
The SUSE Linux Enterprise 12 SP3 kernel was updated to receive various security and bugfixes. The following security bugs were fixed: - CVE-2017-1000405: A bug in the THP CoW support could be used by local attackers to corrupt memory of other processes and cause them to crash . - CVE-2017-16939: The XFRM dump policy implementation in net/xfrm/xfrm_user.c in the Linux kernel allowed local users to gain privileges or cause a denial of service via a crafted SO_RCVBUF setsockopt system call in conjunction with XFRM_MSG_GETPOLICY Netlink messages . The following non-security bugs were fixed: Fix a build issue on ppc64le systems
Platform: |
SUSE Linux Enterprise Server 12 SP3 |