VYPR

rpm package

suse/kgraft-patch-SLE12-SP1_Update_30&distro=SUSE Linux Enterprise Server 12 SP1-LTSS

pkg:rpm/suse/kgraft-patch-SLE12-SP1_Update_30&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP1-LTSS

Vulnerabilities (23)

  • CVE-2018-13406Jul 6, 2018
    affected < 1-2.3.1fixed 1-2.3.1

    An integer overflow in the uvesafb_setcmap function in drivers/video/fbdev/uvesafb.c in the Linux kernel before 4.17.4 could result in local attackers being able to crash the kernel or potentially elevate privileges because kmalloc_array is not used.

  • CVE-2018-13405Jul 6, 2018
    affected < 1-2.3.1fixed 1-2.3.1

    The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, in a scenario where a directory is SGID to a certain group and is writable by a user who is not a member of that group. Here, the no

  • CVE-2018-13053Jul 2, 2018
    affected < 1-2.3.1fixed 1-2.3.1

    The alarm_timer_nsleep function in kernel/time/alarmtimer.c in the Linux kernel through 4.17.3 has an integer overflow via a large relative timeout because ktime_add_safe is not used.

Page 2 of 2