SUSE-SU-2017:1615-1

Source
https://www.suse.com/support/update/announcement/2017/suse-su-20171615-1/
Import Source
https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2017:1615-1.json
JSON Data
https://api.osv.dev/v1/vulns/SUSE-SU-2017:1615-1
Related
Published
2017-06-19T16:02:59Z
Modified
2017-06-19T16:02:59Z
Summary
Security update for the Linux Kernel
Details

The SUSE Linux Enterprise 12 SP1 kernel was updated to receive various security and bugfixes.

The following security bugs were fixed:

  • CVE-2017-1000364: The default stack guard page was too small and could be 'jumped over' by userland programs using more than one page of stack in functions and so lead to memory corruption. This update extends the stack guard page to 1 MB (for 4k pages) and 16 MB (for 64k pages) to reduce this attack vector. This is not a kernel bugfix, but a hardening measure against this kind of userland attack.(bsc#1039348)

The following non-security bugs were fixed:

netfilter: A use-after-free was fixed that could cause a kernel panic on a system shutdown. (bsc#1042292)

References

Affected packages

SUSE:OpenStack Cloud 6 / kernel-default

Package

Name
kernel-default
Purl
pkg:rpm/suse/kernel-default&distro=SUSE%20OpenStack%20Cloud%206

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.12.74-60.64.45.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "3.12.74-60.64.45.1",
            "kernel-devel": "3.12.74-60.64.45.1",
            "kernel-default-base": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-xen": "1-4.1",
            "kernel-xen-devel": "3.12.74-60.64.45.1",
            "kernel-xen-base": "3.12.74-60.64.45.1",
            "kernel-default": "3.12.74-60.64.45.1",
            "kernel-source": "3.12.74-60.64.45.1",
            "kernel-syms": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-default": "1-4.1",
            "kernel-default-devel": "3.12.74-60.64.45.1",
            "kernel-xen": "3.12.74-60.64.45.1"
        }
    ]
}

SUSE:OpenStack Cloud 6 / kernel-source

Package

Name
kernel-source
Purl
pkg:rpm/suse/kernel-source&distro=SUSE%20OpenStack%20Cloud%206

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.12.74-60.64.45.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "3.12.74-60.64.45.1",
            "kernel-devel": "3.12.74-60.64.45.1",
            "kernel-default-base": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-xen": "1-4.1",
            "kernel-xen-devel": "3.12.74-60.64.45.1",
            "kernel-xen-base": "3.12.74-60.64.45.1",
            "kernel-default": "3.12.74-60.64.45.1",
            "kernel-source": "3.12.74-60.64.45.1",
            "kernel-syms": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-default": "1-4.1",
            "kernel-default-devel": "3.12.74-60.64.45.1",
            "kernel-xen": "3.12.74-60.64.45.1"
        }
    ]
}

SUSE:OpenStack Cloud 6 / kernel-syms

Package

Name
kernel-syms
Purl
pkg:rpm/suse/kernel-syms&distro=SUSE%20OpenStack%20Cloud%206

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.12.74-60.64.45.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "3.12.74-60.64.45.1",
            "kernel-devel": "3.12.74-60.64.45.1",
            "kernel-default-base": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-xen": "1-4.1",
            "kernel-xen-devel": "3.12.74-60.64.45.1",
            "kernel-xen-base": "3.12.74-60.64.45.1",
            "kernel-default": "3.12.74-60.64.45.1",
            "kernel-source": "3.12.74-60.64.45.1",
            "kernel-syms": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-default": "1-4.1",
            "kernel-default-devel": "3.12.74-60.64.45.1",
            "kernel-xen": "3.12.74-60.64.45.1"
        }
    ]
}

SUSE:OpenStack Cloud 6 / kernel-xen

Package

Name
kernel-xen
Purl
pkg:rpm/suse/kernel-xen&distro=SUSE%20OpenStack%20Cloud%206

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.12.74-60.64.45.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "3.12.74-60.64.45.1",
            "kernel-devel": "3.12.74-60.64.45.1",
            "kernel-default-base": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-xen": "1-4.1",
            "kernel-xen-devel": "3.12.74-60.64.45.1",
            "kernel-xen-base": "3.12.74-60.64.45.1",
            "kernel-default": "3.12.74-60.64.45.1",
            "kernel-source": "3.12.74-60.64.45.1",
            "kernel-syms": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-default": "1-4.1",
            "kernel-default-devel": "3.12.74-60.64.45.1",
            "kernel-xen": "3.12.74-60.64.45.1"
        }
    ]
}

SUSE:OpenStack Cloud 6 / kgraft-patch-SLE12-SP1_Update_16

Package

Name
kgraft-patch-SLE12-SP1_Update_16
Purl
pkg:rpm/suse/kgraft-patch-SLE12-SP1_Update_16&distro=SUSE%20OpenStack%20Cloud%206

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1-4.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "3.12.74-60.64.45.1",
            "kernel-devel": "3.12.74-60.64.45.1",
            "kernel-default-base": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-xen": "1-4.1",
            "kernel-xen-devel": "3.12.74-60.64.45.1",
            "kernel-xen-base": "3.12.74-60.64.45.1",
            "kernel-default": "3.12.74-60.64.45.1",
            "kernel-source": "3.12.74-60.64.45.1",
            "kernel-syms": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-default": "1-4.1",
            "kernel-default-devel": "3.12.74-60.64.45.1",
            "kernel-xen": "3.12.74-60.64.45.1"
        }
    ]
}

SUSE:Linux Enterprise Module for Public Cloud 12 / kernel-ec2

Package

Name
kernel-ec2
Purl
pkg:rpm/suse/kernel-ec2&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2012

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.12.74-60.64.45.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-ec2-extra": "3.12.74-60.64.45.1",
            "kernel-ec2": "3.12.74-60.64.45.1",
            "kernel-ec2-devel": "3.12.74-60.64.45.1"
        }
    ]
}

SUSE:Linux Enterprise Server for SAP Applications 12 SP1 / kernel-default

Package

Name
kernel-default
Purl
pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP1

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.12.74-60.64.45.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "3.12.74-60.64.45.1",
            "kernel-devel": "3.12.74-60.64.45.1",
            "kernel-default-base": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-xen": "1-4.1",
            "kernel-xen-devel": "3.12.74-60.64.45.1",
            "kernel-xen-base": "3.12.74-60.64.45.1",
            "kernel-default": "3.12.74-60.64.45.1",
            "kernel-source": "3.12.74-60.64.45.1",
            "kernel-syms": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-default": "1-4.1",
            "kernel-default-devel": "3.12.74-60.64.45.1",
            "kernel-xen": "3.12.74-60.64.45.1"
        }
    ]
}

SUSE:Linux Enterprise Server for SAP Applications 12 SP1 / kernel-source

Package

Name
kernel-source
Purl
pkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP1

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.12.74-60.64.45.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "3.12.74-60.64.45.1",
            "kernel-devel": "3.12.74-60.64.45.1",
            "kernel-default-base": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-xen": "1-4.1",
            "kernel-xen-devel": "3.12.74-60.64.45.1",
            "kernel-xen-base": "3.12.74-60.64.45.1",
            "kernel-default": "3.12.74-60.64.45.1",
            "kernel-source": "3.12.74-60.64.45.1",
            "kernel-syms": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-default": "1-4.1",
            "kernel-default-devel": "3.12.74-60.64.45.1",
            "kernel-xen": "3.12.74-60.64.45.1"
        }
    ]
}

SUSE:Linux Enterprise Server for SAP Applications 12 SP1 / kernel-syms

Package

Name
kernel-syms
Purl
pkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP1

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.12.74-60.64.45.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "3.12.74-60.64.45.1",
            "kernel-devel": "3.12.74-60.64.45.1",
            "kernel-default-base": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-xen": "1-4.1",
            "kernel-xen-devel": "3.12.74-60.64.45.1",
            "kernel-xen-base": "3.12.74-60.64.45.1",
            "kernel-default": "3.12.74-60.64.45.1",
            "kernel-source": "3.12.74-60.64.45.1",
            "kernel-syms": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-default": "1-4.1",
            "kernel-default-devel": "3.12.74-60.64.45.1",
            "kernel-xen": "3.12.74-60.64.45.1"
        }
    ]
}

SUSE:Linux Enterprise Server for SAP Applications 12 SP1 / kernel-xen

Package

Name
kernel-xen
Purl
pkg:rpm/suse/kernel-xen&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP1

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.12.74-60.64.45.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "3.12.74-60.64.45.1",
            "kernel-devel": "3.12.74-60.64.45.1",
            "kernel-default-base": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-xen": "1-4.1",
            "kernel-xen-devel": "3.12.74-60.64.45.1",
            "kernel-xen-base": "3.12.74-60.64.45.1",
            "kernel-default": "3.12.74-60.64.45.1",
            "kernel-source": "3.12.74-60.64.45.1",
            "kernel-syms": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-default": "1-4.1",
            "kernel-default-devel": "3.12.74-60.64.45.1",
            "kernel-xen": "3.12.74-60.64.45.1"
        }
    ]
}

SUSE:Linux Enterprise Server for SAP Applications 12 SP1 / kgraft-patch-SLE12-SP1_Update_16

Package

Name
kgraft-patch-SLE12-SP1_Update_16
Purl
pkg:rpm/suse/kgraft-patch-SLE12-SP1_Update_16&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP1

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1-4.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "3.12.74-60.64.45.1",
            "kernel-devel": "3.12.74-60.64.45.1",
            "kernel-default-base": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-xen": "1-4.1",
            "kernel-xen-devel": "3.12.74-60.64.45.1",
            "kernel-xen-base": "3.12.74-60.64.45.1",
            "kernel-default": "3.12.74-60.64.45.1",
            "kernel-source": "3.12.74-60.64.45.1",
            "kernel-syms": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-default": "1-4.1",
            "kernel-default-devel": "3.12.74-60.64.45.1",
            "kernel-xen": "3.12.74-60.64.45.1"
        }
    ]
}

SUSE:Linux Enterprise Server 12 SP1-LTSS / kernel-default

Package

Name
kernel-default
Purl
pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP1-LTSS

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.12.74-60.64.45.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "3.12.74-60.64.45.1",
            "kernel-devel": "3.12.74-60.64.45.1",
            "kernel-default-base": "3.12.74-60.64.45.1",
            "kernel-default-man": "3.12.74-60.64.45.1",
            "kernel-xen-devel": "3.12.74-60.64.45.1",
            "kernel-default": "3.12.74-60.64.45.1",
            "kernel-source": "3.12.74-60.64.45.1",
            "kernel-xen-base": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-xen": "1-4.1",
            "kernel-syms": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-default": "1-4.1",
            "kernel-default-devel": "3.12.74-60.64.45.1",
            "kernel-xen": "3.12.74-60.64.45.1"
        }
    ]
}

SUSE:Linux Enterprise Server 12 SP1-LTSS / kernel-source

Package

Name
kernel-source
Purl
pkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP1-LTSS

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.12.74-60.64.45.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "3.12.74-60.64.45.1",
            "kernel-devel": "3.12.74-60.64.45.1",
            "kernel-default-base": "3.12.74-60.64.45.1",
            "kernel-default-man": "3.12.74-60.64.45.1",
            "kernel-xen-devel": "3.12.74-60.64.45.1",
            "kernel-default": "3.12.74-60.64.45.1",
            "kernel-source": "3.12.74-60.64.45.1",
            "kernel-xen-base": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-xen": "1-4.1",
            "kernel-syms": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-default": "1-4.1",
            "kernel-default-devel": "3.12.74-60.64.45.1",
            "kernel-xen": "3.12.74-60.64.45.1"
        }
    ]
}

SUSE:Linux Enterprise Server 12 SP1-LTSS / kernel-syms

Package

Name
kernel-syms
Purl
pkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP1-LTSS

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.12.74-60.64.45.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "3.12.74-60.64.45.1",
            "kernel-devel": "3.12.74-60.64.45.1",
            "kernel-default-base": "3.12.74-60.64.45.1",
            "kernel-default-man": "3.12.74-60.64.45.1",
            "kernel-xen-devel": "3.12.74-60.64.45.1",
            "kernel-default": "3.12.74-60.64.45.1",
            "kernel-source": "3.12.74-60.64.45.1",
            "kernel-xen-base": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-xen": "1-4.1",
            "kernel-syms": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-default": "1-4.1",
            "kernel-default-devel": "3.12.74-60.64.45.1",
            "kernel-xen": "3.12.74-60.64.45.1"
        }
    ]
}

SUSE:Linux Enterprise Server 12 SP1-LTSS / kernel-xen

Package

Name
kernel-xen
Purl
pkg:rpm/suse/kernel-xen&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP1-LTSS

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.12.74-60.64.45.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "3.12.74-60.64.45.1",
            "kernel-devel": "3.12.74-60.64.45.1",
            "kernel-default-base": "3.12.74-60.64.45.1",
            "kernel-default-man": "3.12.74-60.64.45.1",
            "kernel-xen-devel": "3.12.74-60.64.45.1",
            "kernel-default": "3.12.74-60.64.45.1",
            "kernel-source": "3.12.74-60.64.45.1",
            "kernel-xen-base": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-xen": "1-4.1",
            "kernel-syms": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-default": "1-4.1",
            "kernel-default-devel": "3.12.74-60.64.45.1",
            "kernel-xen": "3.12.74-60.64.45.1"
        }
    ]
}

SUSE:Linux Enterprise Server 12 SP1-LTSS / kgraft-patch-SLE12-SP1_Update_16

Package

Name
kgraft-patch-SLE12-SP1_Update_16
Purl
pkg:rpm/suse/kgraft-patch-SLE12-SP1_Update_16&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP1-LTSS

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1-4.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "3.12.74-60.64.45.1",
            "kernel-devel": "3.12.74-60.64.45.1",
            "kernel-default-base": "3.12.74-60.64.45.1",
            "kernel-default-man": "3.12.74-60.64.45.1",
            "kernel-xen-devel": "3.12.74-60.64.45.1",
            "kernel-default": "3.12.74-60.64.45.1",
            "kernel-source": "3.12.74-60.64.45.1",
            "kernel-xen-base": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-xen": "1-4.1",
            "kernel-syms": "3.12.74-60.64.45.1",
            "kgraft-patch-3_12_74-60_64_45-default": "1-4.1",
            "kernel-default-devel": "3.12.74-60.64.45.1",
            "kernel-xen": "3.12.74-60.64.45.1"
        }
    ]
}