Login
Newsletter
Werbung

Sicherheit: Preisgabe von Informationen in KMPs
Aktuelle Meldungen Distributionen
Name: Preisgabe von Informationen in KMPs
ID: openSUSE-SU-2018:0745-1
Distribution: SUSE
Plattformen: SUSE openSUSE Leap 42.3
Datum: Di, 20. März 2018, 06:10
Referenzen: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-5715
Applikationen: KMPs

Originalnachricht

   openSUSE Security Update: Security update for various KMPs
______________________________________________________________________________

Announcement ID: openSUSE-SU-2018:0745-1
Rating: important
References: #1068032
Cross-References: CVE-2017-5715
Affected Products:
openSUSE Leap 42.3
______________________________________________________________________________

An update that fixes one vulnerability is now available.

Description:


The Spectre Variant 2 in the Linux Kernel is mitigated using
"retpolines".

This update rebuilds all openSUSE Leap 42.3 KMPs to use "retpolines"
and
so be able to mitigate the Spectre v2 attack. (bsc#1068032 CVE-2017-5715)


Patch Instructions:

To install this openSUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:

- openSUSE Leap 42.3:

zypper in -t patch openSUSE-2018-284=1

To bring your system up-to-date, use "zypper patch".


Package List:

- openSUSE Leap 42.3 (i586 x86_64):

crash-7.1.8-6.1
crash-debuginfo-7.1.8-6.1
crash-debugsource-7.1.8-6.1
crash-devel-7.1.8-6.1
crash-doc-7.1.8-6.1
crash-eppic-7.1.8-6.1
crash-eppic-debuginfo-7.1.8-6.1
crash-gcore-7.1.8-6.1
crash-gcore-debuginfo-7.1.8-6.1

- openSUSE Leap 42.3 (x86_64):

bbswitch-0.8-12.2.1
bbswitch-debugsource-0.8-12.2.1
bbswitch-kmp-default-0.8_k4.4.114_42-12.2.1
bbswitch-kmp-default-debuginfo-0.8_k4.4.114_42-12.2.1
crash-kmp-default-7.1.8_k4.4.114_42-6.1
crash-kmp-default-debuginfo-7.1.8_k4.4.114_42-6.1
dpdk-16.11.1-6.2.1
dpdk-debuginfo-16.11.1-6.2.1
dpdk-debugsource-16.11.1-6.2.1
dpdk-devel-16.11.1-6.2.1
dpdk-devel-debuginfo-16.11.1-6.2.1
dpdk-examples-16.11.1-6.2.1
dpdk-examples-debuginfo-16.11.1-6.2.1
dpdk-kmp-default-16.11.1_k4.4.114_42-6.2.1
dpdk-kmp-default-debuginfo-16.11.1_k4.4.114_42-6.2.1
dpdk-tools-16.11.1-6.2.1
drbd-9.0.8+git.c8bc3670-2.2.1
drbd-debugsource-9.0.8+git.c8bc3670-2.2.1
drbd-kmp-default-9.0.8+git.c8bc3670_k4.4.114_42-2.2.1
drbd-kmp-default-debuginfo-9.0.8+git.c8bc3670_k4.4.114_42-2.2.1
drm-debugsource-4.9.33-7.1
drm-kmp-default-4.9.33_k4.4.114_42-7.1
drm-kmp-default-debuginfo-4.9.33_k4.4.114_42-7.1
ftsteutates-debugsource-20160601-4.2.1
ftsteutates-kmp-default-20160601_k4.4.114_42-4.2.1
ftsteutates-kmp-default-debuginfo-20160601_k4.4.114_42-4.2.1
hdjmod-debugsource-1.28-27.2.1
hdjmod-kmp-default-1.28_k4.4.114_42-27.2.1
hdjmod-kmp-default-debuginfo-1.28_k4.4.114_42-27.2.1
ipset-6.29-4.2.1
ipset-debuginfo-6.29-4.2.1
ipset-debugsource-6.29-4.2.1
ipset-devel-6.29-4.2.1
ipset-kmp-default-6.29_k4.4.114_42-4.2.1
ipset-kmp-default-debuginfo-6.29_k4.4.114_42-4.2.1
libipset3-6.29-4.2.1
libipset3-debuginfo-6.29-4.2.1
ndiswrapper-1.59-3.2.1
ndiswrapper-debuginfo-1.59-3.2.1
ndiswrapper-debugsource-1.59-3.2.1
ndiswrapper-kmp-default-1.59_k4.4.114_42-3.2.1
ndiswrapper-kmp-default-debuginfo-1.59_k4.4.114_42-3.2.1
pcfclock-0.44-272.2.1
pcfclock-debuginfo-0.44-272.2.1
pcfclock-debugsource-0.44-272.2.1
pcfclock-kmp-default-0.44_k4.4.114_42-272.2.1
pcfclock-kmp-default-debuginfo-0.44_k4.4.114_42-272.2.1
sysdig-0.17.0-10.1
sysdig-debuginfo-0.17.0-10.1
sysdig-debugsource-0.17.0-10.1
sysdig-kmp-default-0.17.0_k4.4.114_42-10.1
sysdig-kmp-default-debuginfo-0.17.0_k4.4.114_42-10.1
vhba-kmp-debugsource-20161009-9.2.1
vhba-kmp-default-20161009_k4.4.114_42-9.2.1
vhba-kmp-default-debuginfo-20161009_k4.4.114_42-9.2.1
xtables-addons-2.11-4.2.1
xtables-addons-debuginfo-2.11-4.2.1
xtables-addons-debugsource-2.11-4.2.1
xtables-addons-kmp-default-2.11_k4.4.114_42-4.2.1
xtables-addons-kmp-default-debuginfo-2.11_k4.4.114_42-4.2.1

- openSUSE Leap 42.3 (noarch):

dpdk-doc-16.11.1-6.2.1
ftsteutates-sensors-20160601-4.2.1


References:

https://www.suse.com/security/cve/CVE-2017-5715.html
https://bugzilla.suse.com/1068032

--
To unsubscribe, e-mail: opensuse-security-announce+unsubscribe@opensuse.org
For additional commands, e-mail: opensuse-security-announce+help@opensuse.org
Pro-Linux
Pro-Linux @Facebook
Neue Nachrichten
Werbung