SuSE: 2012:0153-2: important: Linux kernel
Summary
The SUSE Linux Enterprise 11 SP1 kernel was updated to 2.6.32.54, fixing lots of bugs and security issues. The following security issues have been fixed: * CVE-2011-4127: A potential hypervisor escape by issuing SG_IO commands to partitiondevices was fixed by restricting access to these commands. * CVE-2011-4110: KEYS: Fix a NULL pointer deref in the user-defined key type, which allowed local attackers to Oops the kernel. * CVE-2011-4081: Avoid potential NULL pointer deref in ghash, which allowed local attackers to Oops the kernel. * CVE-2011-4077: Fixed a memory corruption possibility in xfs readlink, which could be used by local attackers to crash the system or potentially execute code by mounting a prepared xfs filesystem image. * CVE-2012-0038: A overflow in the xfs acl handling was fixed that could be used by local attackers to crash the system or potentially execute code by mounting a prepared xfs filesystem image. ...
Read the Full AdvisoryReferences
#651219 #653260 #668872 #671479 #688996 #694945
#697920 #703156 #706973 #707288 #708625 #711378
#716023 #722910 #724734 #725709 #726600 #726788
#728339 #728626 #729854 #730118 #731004 #731770
#732296 #732677 #733146 #733863 #734056 #735216
#735446 #735453 #735635 #736018 #738400 #740535
#740703 #740867 #742270
Cross- CVE-2010-3873 CVE-2010-4164 CVE-2011-2494
CVE-2011-2699 CVE-2011-4077 CVE-2011-4081
CVE-2011-4110 CVE-2011-4127 CVE-2011-4132
CVE-2012-0038
Affected Products:
SUSE Linux Enterprise Server 11 SP1 for VMware
SUSE Linux Enterprise Server 11 SP1
SUSE Linux Enterprise High Availability Extension 11 SP1
SUSE Linux Enterprise Desktop 11 SP1
https://www.suse.com/security/cve/CVE-2010-3873.html
https://www.suse.com/s...
Read the Full Advisory