Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.850429
Kategorie:SuSE Local Security Checks
Titel:openSUSE: Security Advisory for kernel (openSUSE-SU-2012:1330-1)
Zusammenfassung:The remote host is missing an update for the 'kernel'; package(s) announced via the referenced advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'kernel'
package(s) announced via the referenced advisory.

Vulnerability Insight:
This kernel update to 3.4.11 fixes various bugs and
security issues.

The changes up to 3.4.11 contain both security and bugfixes
and are not explicitly listed here.

The following security issues were fixed: CVE-2012-3520: Force
passing credentials, otherwise local services could be
fooled to assume requests coming from root.

CVE-2012-3412: Do not allow extreme TSO parameters in the
sfc driver and tcp stack.

The following non-security bugs were fixed:

- nbd: clear waiting_queue on shutdown (bnc#778630).

- NFS: avoid warning from nfs_drop_nlink (bnc#780624).

- net: do not disable sg for packets requiring no checksum
(bnc#774859).

- sfc: Fix maximum number of TSO segments and minimum TX
queue size (bnc#774523 CVE-2012-3412).

- net: Allow driver to limit number of GSO segments per skb
(bnc#774523 CVE-2012-3412).

- drm/nouveau: fix booting with plymouth + dumb support
(bnc#771392).

- memcg: warn on deeper hierarchies with use_hierarchy==0
(bnc#781134).

- Linux 3.4.11.

- Update config files.

- Refresh patches.suse/scsi-error-test-unit-ready-timeout.

- Btrfs: fix tree log remove space corner case (bnc#779432)

- irq_remap: disable IRQ remapping if any IOAPIC lacks an
IOMMU.

- Linux 3.4.10.

- Linux 3.4.9.

- kABI: protect struct irq_desc.

- Linux 3.4.8.

- kABI: sdhci, remove inclusion.

- reiserfs: fix deadlock with nfs racing on create/lookup
(bnc#762693).

- Properly update Xen patches to 3.4.7.

- Refresh other Xen patches (bnc#772831).

- config: enable various ARM errata workarounds to improve
stability

- Import kabi files for 12.2

- rpm/config.sh: Build the KOTD against 12.2

- ASoC: omap: Add missing modules aliases to get sound
working on omap devices.

- Update config files to fix build

- rt2800: add chipset revision RT5390R support (bnc#772566).

- reiserfs: fix deadlocks with quotas

- ACPI, APEI: Fixup common access width firmware bug
(bnc#765230).

Description truncated, please see the referenced URL(s) for more information.

Affected Software/OS:
kernel on openSUSE 12.2

Solution:
Please install the updated package(s).

CVSS Score:
7.8

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2012-3412
http://www.openwall.com/lists/oss-security/2012/08/03/4
RedHat Security Advisories: RHSA-2012:1323
http://rhn.redhat.com/errata/RHSA-2012-1323.html
RedHat Security Advisories: RHSA-2012:1324
http://rhn.redhat.com/errata/RHSA-2012-1324.html
RedHat Security Advisories: RHSA-2012:1347
http://rhn.redhat.com/errata/RHSA-2012-1347.html
RedHat Security Advisories: RHSA-2012:1375
http://rhn.redhat.com/errata/RHSA-2012-1375.html
RedHat Security Advisories: RHSA-2012:1401
http://rhn.redhat.com/errata/RHSA-2012-1401.html
RedHat Security Advisories: RHSA-2012:1430
http://rhn.redhat.com/errata/RHSA-2012-1430.html
http://secunia.com/advisories/50633
http://secunia.com/advisories/50732
http://secunia.com/advisories/50811
http://secunia.com/advisories/51193
SuSE Security Announcement: SUSE-SU-2012:1679 (Google Search)
https://www.suse.com/support/update/announcement/2012/suse-su-20121679-1.html
SuSE Security Announcement: openSUSE-SU-2012:1330 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2012-10/msg00005.html
http://www.ubuntu.com/usn/USN-1567-1
http://www.ubuntu.com/usn/USN-1568-1
http://www.ubuntu.com/usn/USN-1572-1
http://www.ubuntu.com/usn/USN-1575-1
http://www.ubuntu.com/usn/USN-1577-1
http://www.ubuntu.com/usn/USN-1578-1
http://www.ubuntu.com/usn/USN-1579-1
http://www.ubuntu.com/usn/USN-1580-1
Common Vulnerability Exposure (CVE) ID: CVE-2012-3520
BugTraq ID: 55152
http://www.securityfocus.com/bid/55152
http://www.openwall.com/lists/oss-security/2012/08/22/1
http://secunia.com/advisories/50848
SuSE Security Announcement: openSUSE-SU-2013:0261 (Google Search)
http://lists.opensuse.org/opensuse-updates/2013-02/msg00018.html
http://www.ubuntu.com/usn/USN-1599-1
http://www.ubuntu.com/usn/USN-1610-1
CopyrightCopyright (C) 2013 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.