FlawAtlas
Search the atlas
SUSE-SU-2017:0786-1 Not scored

Security update for Linux Kernel Live Patch 12 for SLE 12 SP1

This update for the Linux Kernel 3.12.69-60_64_29 fixes several issues. The following security bug was fixed: - CVE-2017-5970: The ipv4_pktinfo_prepare function in net/ipv4/ip_sockglue.c in the Linux kernel allowed attackers to cause a denial of service (system crash) via (1) an application that made crafted system calls or possibly (2) IPv4 traffic with invalid IP options (bsc#1025013). The following non-security bug was fixed: - Fix for a 'Data miscompare on a read' which was observed during the rebuilding of degraded MDRAID VDs. (bsc#1025254)

Exploit probability Not scored
Published March 21, 2017
Required by Not available
Last source change February 4, 2026

02 / AFFECTED SOFTWARE

Affected packages

SUSE:Linux Enterprise Live Patching 12 kgraft-patch-SLE12-SP1_Update_12

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities SUSE-SU-2017:0786-1

This update for the Linux Kernel 3.12.69-60_64_29 fixes several issues. The following security bug was fixed: - CVE-2017-5970: The ipv4_pktinfo_prepare function in net/ipv4/ip_sockglue.c in the Linux kernel allowed attackers to cause a denial of service (system crash) via (1) an application that made crafted system calls or possibly (2) IPv4 traffic with invalid IP options (bsc#1025013). The following non-security bug was fixed: - Fix for a 'Data miscompare on a read' which was observed during the rebuilding of degraded MDRAID VDs. (bsc#1025254)

View original source

05 / REFERENCES

Further evidence