The SUSE Linux Enterprise 15 kernel was updated to receive various security and bugfixes.
The following security bugs were fixed:
The Linux Kernel kvm hypervisor was adjusted to avoid page size changes in executable pages by splitting / merging huge pages into small pages as needed. More information can be found on https://www.suse.com/support/kb/doc/?id=7023735
The Linux kernel was supplemented with the option to disable TSX operation altogether (requiring CPU Microcode updates on older systems) and better flushing of microarchitectural buffers (VERW).
The set of options available is described in our TID at https://www.suse.com/support/kb/doc/?id=7024251
The following non-security bugs were fixed:
{
"binaries": [
{
"kernel-default": "4.12.14-150.41.1",
"kernel-zfcpdump": "4.12.14-150.41.1",
"kernel-macros": "4.12.14-150.41.1",
"kernel-default-man": "4.12.14-150.41.1",
"kernel-devel": "4.12.14-150.41.1",
"kernel-default-devel": "4.12.14-150.41.1",
"kernel-default-base": "4.12.14-150.41.1"
}
]
}{
"binaries": [
{
"kernel-default": "4.12.14-150.41.1",
"kernel-zfcpdump": "4.12.14-150.41.1",
"kernel-macros": "4.12.14-150.41.1",
"kernel-default-man": "4.12.14-150.41.1",
"kernel-devel": "4.12.14-150.41.1",
"kernel-default-devel": "4.12.14-150.41.1",
"kernel-default-base": "4.12.14-150.41.1"
}
]
}{
"binaries": [
{
"kernel-default": "4.12.14-150.41.1",
"kernel-zfcpdump": "4.12.14-150.41.1",
"kernel-macros": "4.12.14-150.41.1",
"kernel-default-man": "4.12.14-150.41.1",
"kernel-devel": "4.12.14-150.41.1",
"kernel-default-devel": "4.12.14-150.41.1",
"kernel-default-base": "4.12.14-150.41.1"
}
]
}