VYPR

rpm package

suse/kgraft-patch-SLE12_Update_6&distro=SUSE Linux Enterprise Live Patching 12

pkg:rpm/suse/kgraft-patch-SLE12_Update_6&distro=SUSE%20Linux%20Enterprise%20Live%20Patching%2012

Vulnerabilities (24)

  • CVE-2014-9728Aug 31, 2015
    affected < 1-2.1fixed 1-2.1

    The UDF filesystem implementation in the Linux kernel before 3.18.2 does not validate certain lengths, which allows local users to cause a denial of service (buffer over-read and system crash) via a crafted filesystem image, related to fs/udf/inode.c and fs/udf/symlink.c.

  • CVE-2015-1805Aug 8, 2015
    affected < 1-2.1fixed 1-2.1

    The (1) pipe_read and (2) pipe_write implementations in fs/pipe.c in the Linux kernel before 3.16 do not properly consider the side effects of failed __copy_to_user_inatomic and __copy_from_user_inatomic calls, which allows local users to cause a denial of service (system crash)

  • CVE-2015-4167Aug 5, 2015
    affected < 1-2.1fixed 1-2.1

    The udf_read_inode function in fs/udf/inode.c in the Linux kernel before 3.19.1 does not validate certain length values, which allows local users to cause a denial of service (incorrect data representation or integer overflow, and OOPS) via a crafted UDF filesystem.

  • CVE-2015-4692Jul 27, 2015
    affected < 1-2.1fixed 1-2.1

    The kvm_apic_has_events function in arch/x86/kvm/lapic.h in the Linux kernel through 4.1.3 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by leveraging /dev/kvm access for an ioctl call.

Page 2 of 2