SUSE-SU-2019:0828-1

Source
https://www.suse.com/support/update/announcement/2019/suse-su-20190828-1/
Import Source
https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2019:0828-1.json
JSON Data
https://api.osv.dev/v1/vulns/SUSE-SU-2019:0828-1
Related
Published
2019-04-01T09:28:05Z
Modified
2019-04-01T09:28:05Z
Summary
Security update for the Linux Kernel
Details

The SUSE Linux Enterprise 12 SP2 LTSS kernel was updated to receive various security and bugfixes.

The following security bugs were fixed:

  • CVE-2019-2024: A use-after-free when disconnecting a source was fixed which could lead to crashes. bnc#1129179).
  • CVE-2019-9213: expand_downwards in mm/mmap.c lacked a check for the mmap minimum address, which made it easier for attackers to exploit kernel NULL pointer dereferences on non-SMAP platforms. This is related to a capability check for the wrong task (bnc#1128166).
  • CVE-2018-14633: A security flaw was found in the chapservercompute_md5() function in the ISCSI target code in the Linux kernel in a way an authentication request from an ISCSI initiator is processed. (bnc#1107829).
  • CVE-2019-7221: The KVM implementation in the Linux kernel had a Use-after-Free (bnc#1124732).
  • CVE-2019-7222: The KVM implementation in the Linux kernel had an Information Leak (bnc#1124735).
  • CVE-2019-6974: kvmioctlcreatedevice in virt/kvm/kvmmain.c mishandled reference counting because of a race condition, which led to a use-after-free (bnc#1124728).

The following non-security bugs were fixed:

  • copymountstring: Limit string length to PATH_MAX (bsc#1082943).
  • enic: add wq clean up budget (bsc#1075697, bsc#1120691. bsc#1102959).
  • ibmvscsi: Fix empty event pool access during host removal (bsc#1119019).
  • ipv4: ipv6: Adjust the frag mem limit after truesize has been changed (bsc#1110286).
  • kmps: obsolete older KMPs of the same flavour (bsc#1127155, bsc#1109137).
  • netfilter: ipv6: Adjust the frag mem limit after truesize has been changed (bsc#1110286).
  • perf/x86: Add sysfs entry to freeze counters on SMI (bsc#1121805).
  • perf/x86/intel: Delay memory deallocation until x86pmudead_cpu() (bsc#1121805).
  • perf/x86/intel: Do not enable freeze-on-smi for PerfMon V1 (bsc#1121805).
  • perf/x86/intel: Fix memory corruption (bsc#1121805).
  • perf/x86/intel: Generalize dynamic constraint creation (bsc#1121805).
  • perf/x86/intel: Implement support for TSX Force Abort (bsc#1121805).
  • perf/x86/intel: Make cpuc allocations consistent (bsc#1121805).
  • pseries/energy: Use OF accessor function to read ibm,drc-indexes (bsc#1129080).
  • restore condresched() in shrinkdcache_parent() (bsc#1098599, bsc#1105402, bsc#1127758).
  • rps: flowdissector: Fix uninitialized flowkeys used in _skbget_hash possibly (bsc#1108145).
  • scsi: megaraidsas: Send SYNCHRONIZECACHE for VD to firmware (bsc#1121698).
  • scsi: sym53c8xx: fix NULL pointer dereference panic in symintsir() (bsc#1125315).
  • x86: Add TSX Force Abort CPUID/MSR (bsc#1121805).
  • x86: respect memory size limiting via mem= parameter (bsc#1117645).
  • x86/spectre_v2: Do not check microcode versions when running under hypervisors (bsc#1122821).
  • x86/xen: dont add memory above max allowed allocation (bsc#1117645).
  • xen-netfront: Fix hang on device removal (bnc#1012382).
  • xfrm: use complete IPv6 addresses for hash (bsc#1109330).
  • xfs: remove filestream item xfs_inode reference (bsc#1127961).
References

Affected packages

SUSE:OpenStack Cloud 7 / kernel-default

Package

Name
kernel-default
Purl
purl:rpm/suse/kernel-default&distro=SUSE%20OpenStack%20Cloud%207

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.104.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.104.1",
            "kernel-devel": "4.4.121-92.104.1",
            "kernel-default-base": "4.4.121-92.104.1",
            "kernel-default-man": "4.4.121-92.104.1",
            "kgraft-patch-4_4_121-92_104-default": "1-3.3.1",
            "kernel-default": "4.4.121-92.104.1",
            "kernel-source": "4.4.121-92.104.1",
            "kernel-syms": "4.4.121-92.104.1",
            "kernel-default-devel": "4.4.121-92.104.1"
        }
    ]
}

SUSE:OpenStack Cloud 7 / kernel-source

Package

Name
kernel-source
Purl
purl:rpm/suse/kernel-source&distro=SUSE%20OpenStack%20Cloud%207

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.104.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.104.1",
            "kernel-devel": "4.4.121-92.104.1",
            "kernel-default-base": "4.4.121-92.104.1",
            "kernel-default-man": "4.4.121-92.104.1",
            "kgraft-patch-4_4_121-92_104-default": "1-3.3.1",
            "kernel-default": "4.4.121-92.104.1",
            "kernel-source": "4.4.121-92.104.1",
            "kernel-syms": "4.4.121-92.104.1",
            "kernel-default-devel": "4.4.121-92.104.1"
        }
    ]
}

SUSE:OpenStack Cloud 7 / kernel-syms

Package

Name
kernel-syms
Purl
purl:rpm/suse/kernel-syms&distro=SUSE%20OpenStack%20Cloud%207

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.104.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.104.1",
            "kernel-devel": "4.4.121-92.104.1",
            "kernel-default-base": "4.4.121-92.104.1",
            "kernel-default-man": "4.4.121-92.104.1",
            "kgraft-patch-4_4_121-92_104-default": "1-3.3.1",
            "kernel-default": "4.4.121-92.104.1",
            "kernel-source": "4.4.121-92.104.1",
            "kernel-syms": "4.4.121-92.104.1",
            "kernel-default-devel": "4.4.121-92.104.1"
        }
    ]
}

SUSE:OpenStack Cloud 7 / kgraft-patch-SLE12-SP2_Update_28

Package

Name
kgraft-patch-SLE12-SP2_Update_28
Purl
purl:rpm/suse/kgraft-patch-SLE12-SP2_Update_28&distro=SUSE%20OpenStack%20Cloud%207

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1-3.3.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.104.1",
            "kernel-devel": "4.4.121-92.104.1",
            "kernel-default-base": "4.4.121-92.104.1",
            "kernel-default-man": "4.4.121-92.104.1",
            "kgraft-patch-4_4_121-92_104-default": "1-3.3.1",
            "kernel-default": "4.4.121-92.104.1",
            "kernel-source": "4.4.121-92.104.1",
            "kernel-syms": "4.4.121-92.104.1",
            "kernel-default-devel": "4.4.121-92.104.1"
        }
    ]
}

SUSE:Linux Enterprise High Availability Extension 12 SP2 / kernel-default

Package

Name
kernel-default
Purl
purl:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20High%20Availability%20Extension%2012%20SP2

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.104.1

Ecosystem specific

{
    "binaries": [
        {
            "dlm-kmp-default": "4.4.121-92.104.1",
            "gfs2-kmp-default": "4.4.121-92.104.1",
            "cluster-network-kmp-default": "4.4.121-92.104.1",
            "ocfs2-kmp-default": "4.4.121-92.104.1",
            "cluster-md-kmp-default": "4.4.121-92.104.1"
        }
    ]
}

SUSE:Linux Enterprise Server for SAP Applications 12 SP2 / kernel-default

Package

Name
kernel-default
Purl
purl:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP2

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.104.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.104.1",
            "kernel-devel": "4.4.121-92.104.1",
            "kernel-default-base": "4.4.121-92.104.1",
            "kgraft-patch-4_4_121-92_104-default": "1-3.3.1",
            "kernel-default": "4.4.121-92.104.1",
            "kernel-source": "4.4.121-92.104.1",
            "kernel-syms": "4.4.121-92.104.1",
            "kernel-default-devel": "4.4.121-92.104.1"
        }
    ]
}

SUSE:Linux Enterprise Server for SAP Applications 12 SP2 / kernel-source

Package

Name
kernel-source
Purl
purl:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP2

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.104.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.104.1",
            "kernel-devel": "4.4.121-92.104.1",
            "kernel-default-base": "4.4.121-92.104.1",
            "kgraft-patch-4_4_121-92_104-default": "1-3.3.1",
            "kernel-default": "4.4.121-92.104.1",
            "kernel-source": "4.4.121-92.104.1",
            "kernel-syms": "4.4.121-92.104.1",
            "kernel-default-devel": "4.4.121-92.104.1"
        }
    ]
}

SUSE:Linux Enterprise Server for SAP Applications 12 SP2 / kernel-syms

Package

Name
kernel-syms
Purl
purl:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP2

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.104.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.104.1",
            "kernel-devel": "4.4.121-92.104.1",
            "kernel-default-base": "4.4.121-92.104.1",
            "kgraft-patch-4_4_121-92_104-default": "1-3.3.1",
            "kernel-default": "4.4.121-92.104.1",
            "kernel-source": "4.4.121-92.104.1",
            "kernel-syms": "4.4.121-92.104.1",
            "kernel-default-devel": "4.4.121-92.104.1"
        }
    ]
}

SUSE:Linux Enterprise Server for SAP Applications 12 SP2 / kgraft-patch-SLE12-SP2_Update_28

Package

Name
kgraft-patch-SLE12-SP2_Update_28
Purl
purl:rpm/suse/kgraft-patch-SLE12-SP2_Update_28&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP2

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1-3.3.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.104.1",
            "kernel-devel": "4.4.121-92.104.1",
            "kernel-default-base": "4.4.121-92.104.1",
            "kgraft-patch-4_4_121-92_104-default": "1-3.3.1",
            "kernel-default": "4.4.121-92.104.1",
            "kernel-source": "4.4.121-92.104.1",
            "kernel-syms": "4.4.121-92.104.1",
            "kernel-default-devel": "4.4.121-92.104.1"
        }
    ]
}

SUSE:Linux Enterprise Server 12 SP2-LTSS / kernel-default

Package

Name
kernel-default
Purl
purl:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP2-LTSS

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.104.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.104.1",
            "kernel-devel": "4.4.121-92.104.1",
            "kernel-default-base": "4.4.121-92.104.1",
            "kernel-default-man": "4.4.121-92.104.1",
            "kgraft-patch-4_4_121-92_104-default": "1-3.3.1",
            "kernel-default": "4.4.121-92.104.1",
            "kernel-source": "4.4.121-92.104.1",
            "kernel-syms": "4.4.121-92.104.1",
            "kernel-default-devel": "4.4.121-92.104.1"
        }
    ]
}

SUSE:Linux Enterprise Server 12 SP2-LTSS / kernel-source

Package

Name
kernel-source
Purl
purl:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP2-LTSS

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.104.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.104.1",
            "kernel-devel": "4.4.121-92.104.1",
            "kernel-default-base": "4.4.121-92.104.1",
            "kernel-default-man": "4.4.121-92.104.1",
            "kgraft-patch-4_4_121-92_104-default": "1-3.3.1",
            "kernel-default": "4.4.121-92.104.1",
            "kernel-source": "4.4.121-92.104.1",
            "kernel-syms": "4.4.121-92.104.1",
            "kernel-default-devel": "4.4.121-92.104.1"
        }
    ]
}

SUSE:Linux Enterprise Server 12 SP2-LTSS / kernel-syms

Package

Name
kernel-syms
Purl
purl:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP2-LTSS

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.104.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.104.1",
            "kernel-devel": "4.4.121-92.104.1",
            "kernel-default-base": "4.4.121-92.104.1",
            "kernel-default-man": "4.4.121-92.104.1",
            "kgraft-patch-4_4_121-92_104-default": "1-3.3.1",
            "kernel-default": "4.4.121-92.104.1",
            "kernel-source": "4.4.121-92.104.1",
            "kernel-syms": "4.4.121-92.104.1",
            "kernel-default-devel": "4.4.121-92.104.1"
        }
    ]
}

SUSE:Linux Enterprise Server 12 SP2-LTSS / kgraft-patch-SLE12-SP2_Update_28

Package

Name
kgraft-patch-SLE12-SP2_Update_28
Purl
purl:rpm/suse/kgraft-patch-SLE12-SP2_Update_28&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP2-LTSS

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1-3.3.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.104.1",
            "kernel-devel": "4.4.121-92.104.1",
            "kernel-default-base": "4.4.121-92.104.1",
            "kernel-default-man": "4.4.121-92.104.1",
            "kgraft-patch-4_4_121-92_104-default": "1-3.3.1",
            "kernel-default": "4.4.121-92.104.1",
            "kernel-source": "4.4.121-92.104.1",
            "kernel-syms": "4.4.121-92.104.1",
            "kernel-default-devel": "4.4.121-92.104.1"
        }
    ]
}

SUSE:Linux Enterprise Server 12 SP2-BCL / kernel-default

Package

Name
kernel-default
Purl
purl:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP2-BCL

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.104.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.104.1",
            "kernel-devel": "4.4.121-92.104.1",
            "kernel-default-base": "4.4.121-92.104.1",
            "kernel-default": "4.4.121-92.104.1",
            "kernel-source": "4.4.121-92.104.1",
            "kernel-syms": "4.4.121-92.104.1",
            "kernel-default-devel": "4.4.121-92.104.1"
        }
    ]
}

SUSE:Linux Enterprise Server 12 SP2-BCL / kernel-source

Package

Name
kernel-source
Purl
purl:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP2-BCL

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.104.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.104.1",
            "kernel-devel": "4.4.121-92.104.1",
            "kernel-default-base": "4.4.121-92.104.1",
            "kernel-default": "4.4.121-92.104.1",
            "kernel-source": "4.4.121-92.104.1",
            "kernel-syms": "4.4.121-92.104.1",
            "kernel-default-devel": "4.4.121-92.104.1"
        }
    ]
}

SUSE:Linux Enterprise Server 12 SP2-BCL / kernel-syms

Package

Name
kernel-syms
Purl
purl:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP2-BCL

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.104.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.104.1",
            "kernel-devel": "4.4.121-92.104.1",
            "kernel-default-base": "4.4.121-92.104.1",
            "kernel-default": "4.4.121-92.104.1",
            "kernel-source": "4.4.121-92.104.1",
            "kernel-syms": "4.4.121-92.104.1",
            "kernel-default-devel": "4.4.121-92.104.1"
        }
    ]
}

SUSE:Enterprise Storage 4 / kernel-default

Package

Name
kernel-default
Purl
purl:rpm/suse/kernel-default&distro=SUSE%20Enterprise%20Storage%204

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.104.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.104.1",
            "kernel-devel": "4.4.121-92.104.1",
            "kernel-default-base": "4.4.121-92.104.1",
            "kgraft-patch-4_4_121-92_104-default": "1-3.3.1",
            "kernel-default": "4.4.121-92.104.1",
            "kernel-source": "4.4.121-92.104.1",
            "kernel-syms": "4.4.121-92.104.1",
            "kernel-default-devel": "4.4.121-92.104.1"
        }
    ]
}

SUSE:Enterprise Storage 4 / kernel-source

Package

Name
kernel-source
Purl
purl:rpm/suse/kernel-source&distro=SUSE%20Enterprise%20Storage%204

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.104.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.104.1",
            "kernel-devel": "4.4.121-92.104.1",
            "kernel-default-base": "4.4.121-92.104.1",
            "kgraft-patch-4_4_121-92_104-default": "1-3.3.1",
            "kernel-default": "4.4.121-92.104.1",
            "kernel-source": "4.4.121-92.104.1",
            "kernel-syms": "4.4.121-92.104.1",
            "kernel-default-devel": "4.4.121-92.104.1"
        }
    ]
}

SUSE:Enterprise Storage 4 / kernel-syms

Package

Name
kernel-syms
Purl
purl:rpm/suse/kernel-syms&distro=SUSE%20Enterprise%20Storage%204

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.104.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.104.1",
            "kernel-devel": "4.4.121-92.104.1",
            "kernel-default-base": "4.4.121-92.104.1",
            "kgraft-patch-4_4_121-92_104-default": "1-3.3.1",
            "kernel-default": "4.4.121-92.104.1",
            "kernel-source": "4.4.121-92.104.1",
            "kernel-syms": "4.4.121-92.104.1",
            "kernel-default-devel": "4.4.121-92.104.1"
        }
    ]
}

SUSE:Enterprise Storage 4 / kgraft-patch-SLE12-SP2_Update_28

Package

Name
kgraft-patch-SLE12-SP2_Update_28
Purl
purl:rpm/suse/kgraft-patch-SLE12-SP2_Update_28&distro=SUSE%20Enterprise%20Storage%204

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1-3.3.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.104.1",
            "kernel-devel": "4.4.121-92.104.1",
            "kernel-default-base": "4.4.121-92.104.1",
            "kgraft-patch-4_4_121-92_104-default": "1-3.3.1",
            "kernel-default": "4.4.121-92.104.1",
            "kernel-source": "4.4.121-92.104.1",
            "kernel-syms": "4.4.121-92.104.1",
            "kernel-default-devel": "4.4.121-92.104.1"
        }
    ]
}