FlawAtlas
Search the atlas
SUSE-SU-2018:4195-1 Not scored

Security update for the Linux Kernel (Live Patch 35 for SLE 12)

This update for the Linux Kernel 3.12.61-52_133 fixes several issues. The following security issues were fixed: - CVE-2018-9568: Prevent possible memory corruption due to type confusion in sk_clone_lock. This could lead to local privilege escalation (bsc#1118319). - CVE-2018-5848: Fixed an unsigned integer overflow in wmi_set_ie. This could lead to a buffer overflow (bsc#1097356).

Exploit probability Not scored
Published December 19, 2018
Required by Not available
Last source change February 4, 2026

02 / AFFECTED SOFTWARE

Affected packages

SUSE:Linux Enterprise Server 12-LTSS kgraft-patch-SLE12_Update_32
SUSE:Linux Enterprise Server 12-LTSS kgraft-patch-SLE12_Update_33
SUSE:Linux Enterprise Server 12-LTSS kgraft-patch-SLE12_Update_30
SUSE:Linux Enterprise Server 12-LTSS kgraft-patch-SLE12_Update_31
SUSE:Linux Enterprise Server 12-LTSS kgraft-patch-SLE12_Update_34
SUSE:Linux Enterprise Server 12-LTSS kgraft-patch-SLE12_Update_35

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities SUSE-SU-2018:4195-1

This update for the Linux Kernel 3.12.61-52_133 fixes several issues. The following security issues were fixed: - CVE-2018-9568: Prevent possible memory corruption due to type confusion in sk_clone_lock. This could lead to local privilege escalation (bsc#1118319). - CVE-2018-5848: Fixed an unsigned integer overflow in wmi_set_ie. This could lead to a buffer overflow (bsc#1097356).

View original source

05 / REFERENCES

Further evidence