FlawAtlas
Search the atlas
SUSE-SU-2019:1668-1 Not scored

Security update for the Linux Kernel (Live Patch 32 for SLE 12 SP1)

This update for the Linux Kernel 3.12.74-60_64_107 fixes several issues. The following security issues were fixed: - CVE-2019-3846: A flaw that allowed an attacker to corrupt memory and possibly escalate privileges was found in the mwifiex kernel module while connecting to a malicious wireless network (bsc#1136446). - CVE-2019-11477: A sequence of SACKs may have been crafted by a remote attacker such that one can trigger an integer overflow, leading to a kernel panic. (bsc#1137586). - CVE-2019-11478: It was possible to send a crafted sequence of SACKs which would fragment the TCP retransmission queue. A remote attacker may have been able to further exploit the fragmented queue to cause an expensive linked-list walk for subsequent SACKs received for that same TCP connection. (bsc#1137586) - CVE-2019-11487: The Linux kernel allowed page->_refcount reference count overflow, with resultant use-after-free issues, if about 140 GiB of RAM exists. This is related to fs/fuse/dev.c, fs/pipe.c, fs/splice.c, include/linux/mm.h, include/linux/pipe_fs_i.h, kernel/trace/trace.c, mm/gup.c, and mm/hugetlb.c. It can occur with FUSE requests (bsc#1133191).

Exploit probability Not scored
Published June 21, 2019
Required by Not available
Last source change February 4, 2026

02 / AFFECTED SOFTWARE

Affected packages

SUSE:Linux Enterprise Server 12 SP1-LTSS kgraft-patch-SLE12-SP1_Update_29
SUSE:Linux Enterprise Server 12 SP1-LTSS kgraft-patch-SLE12-SP1_Update_30
SUSE:Linux Enterprise Server 12 SP1-LTSS kgraft-patch-SLE12-SP1_Update_31
SUSE:Linux Enterprise Server 12 SP1-LTSS kgraft-patch-SLE12-SP1_Update_32
SUSE:Linux Enterprise Server 12 SP1-LTSS kgraft-patch-SLE12-SP1_Update_33
SUSE:Linux Enterprise Server 12-LTSS kgraft-patch-SLE12_Update_36
SUSE:Linux Enterprise Server 12-LTSS kgraft-patch-SLE12_Update_37
SUSE:Linux Enterprise Server 12-LTSS kgraft-patch-SLE12_Update_38
SUSE:Linux Enterprise Server 12-LTSS kgraft-patch-SLE12_Update_39
SUSE:Linux Enterprise Server for SAP Applications 12 SP1 kgraft-patch-SLE12-SP1_Update_29
SUSE:Linux Enterprise Server for SAP Applications 12 SP1 kgraft-patch-SLE12-SP1_Update_30
SUSE:Linux Enterprise Server for SAP Applications 12 SP1 kgraft-patch-SLE12-SP1_Update_31
SUSE:Linux Enterprise Server for SAP Applications 12 SP1 kgraft-patch-SLE12-SP1_Update_32
SUSE:Linux Enterprise Server for SAP Applications 12 SP1 kgraft-patch-SLE12-SP1_Update_33

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities SUSE-SU-2019:1668-1

This update for the Linux Kernel 3.12.74-60_64_107 fixes several issues. The following security issues were fixed: - CVE-2019-3846: A flaw that allowed an attacker to corrupt memory and possibly escalate privileges was found in the mwifiex kernel module while connecting to a malicious wireless network (bsc#1136446). - CVE-2019-11477: A sequence of SACKs may have been crafted by a remote attacker such that one can trigger an integer overflow, leading to a kernel panic. (bsc#1137586). - CVE-2019-11478: It was possible to send a crafted sequence of SACKs which would fragment the TCP retransmission queue. A remote attacker may have been able to further exploit the fragmented queue to cause an expensive linked-list walk for subsequent SACKs received for that same TCP connection. (bsc#1137586) - CVE-2019-11487: The Linux kernel allowed page->_refcount reference count overflow, with resultant use-after-free issues, if about 140 GiB of RAM exists. This is related to fs/fuse/dev.c, fs/pipe.c, fs/splice.c, include/linux/mm.h, include/linux/pipe_fs_i.h, kernel/trace/trace.c, mm/gup.c, and mm/hugetlb.c. It can occur with FUSE requests (bsc#1133191).

View original source

05 / REFERENCES

Further evidence