File _patchinfo of Package patchinfo.21813

<patchinfo incident="21813">
  <issue id="1190432" tracker="bnc">VUL-0: CVE-2021-3752: kernel live patch: a uaf bug in bluetooth</issue>
  <issue id="1191318" tracker="bnc">VUL-0: CVE-2021-41864: kernel live patch: eBPF multiplication integer overflow in prealloc_elems_and_freelist() in kernel/bpf/stackmap.c leads to out-of-bounds write</issue>
  <issue id="1192042" tracker="bnc">VUL-0: CVE-2021-0935: kernel live patch: In ip6_xmit of ip6_output.c, there is a possible out of bounds write due to a use after free</issue>
  <issue id="2021-0935" tracker="cve" />
  <issue id="2021-3752" tracker="cve" />
  <issue id="2021-41864" tracker="cve" />
  <category>security</category>
  <rating>important</rating>
  <packager>nstange</packager>
  <description>This update for the Linux Kernel 4.12.14-197_78 fixes several issues.

The following security issues were fixed:

- CVE-2021-0935: Fixed use after free that could lead to local escalation of privilege in ip6_xmit of ip6_output.c (bsc#1192042).
- CVE-2021-3752: Fixed vulnerability in the linux kernel Bluetooth uaf module (bsc#1190432).
- CVE-2021-41864: Fixed an integer overflow with a resultant out-of-bounds write in prealloc_elems_and_freelist in kernel/bpf/stackmap.c (bsc#1191318).
</description>
<summary>Security update for the Linux Kernel (Live Patch 21 for SLE 15 SP1)</summary>
</patchinfo>
openSUSE Build Service is sponsored by