openSUSE Security Update: Security update for various KMPs
______________________________________________________________________________

Announcement ID:    openSUSE-SU-2018:0745-1
Rating:             important
References:         #1068032 
Cross-References:   CVE-2017-5715
Affected Products:
                    openSUSE Leap 42.3
______________________________________________________________________________

   An update that fixes one vulnerability is now available.

Description:


   The Spectre Variant 2 in the Linux Kernel is mitigated using "retpolines".

   This update rebuilds all openSUSE Leap 42.3 KMPs to use "retpolines" and
   so be able to mitigate the Spectre v2 attack. (bsc#1068032 CVE-2017-5715)


Patch Instructions:

   To install this openSUSE Security Update use YaST online_update.
   Alternatively you can run the command listed for your product:

   - openSUSE Leap 42.3:

      zypper in -t patch openSUSE-2018-284=1

   To bring your system up-to-date, use "zypper patch".


Package List:

   - openSUSE Leap 42.3 (i586 x86_64):

      crash-7.1.8-6.1
      crash-debuginfo-7.1.8-6.1
      crash-debugsource-7.1.8-6.1
      crash-devel-7.1.8-6.1
      crash-doc-7.1.8-6.1
      crash-eppic-7.1.8-6.1
      crash-eppic-debuginfo-7.1.8-6.1
      crash-gcore-7.1.8-6.1
      crash-gcore-debuginfo-7.1.8-6.1

   - openSUSE Leap 42.3 (x86_64):

      bbswitch-0.8-12.2.1
      bbswitch-debugsource-0.8-12.2.1
      bbswitch-kmp-default-0.8_k4.4.114_42-12.2.1
      bbswitch-kmp-default-debuginfo-0.8_k4.4.114_42-12.2.1
      crash-kmp-default-7.1.8_k4.4.114_42-6.1
      crash-kmp-default-debuginfo-7.1.8_k4.4.114_42-6.1
      dpdk-16.11.1-6.2.1
      dpdk-debuginfo-16.11.1-6.2.1
      dpdk-debugsource-16.11.1-6.2.1
      dpdk-devel-16.11.1-6.2.1
      dpdk-devel-debuginfo-16.11.1-6.2.1
      dpdk-examples-16.11.1-6.2.1
      dpdk-examples-debuginfo-16.11.1-6.2.1
      dpdk-kmp-default-16.11.1_k4.4.114_42-6.2.1
      dpdk-kmp-default-debuginfo-16.11.1_k4.4.114_42-6.2.1
      dpdk-tools-16.11.1-6.2.1
      drbd-9.0.8+git.c8bc3670-2.2.1
      drbd-debugsource-9.0.8+git.c8bc3670-2.2.1
      drbd-kmp-default-9.0.8+git.c8bc3670_k4.4.114_42-2.2.1
      drbd-kmp-default-debuginfo-9.0.8+git.c8bc3670_k4.4.114_42-2.2.1
      drm-debugsource-4.9.33-7.1
      drm-kmp-default-4.9.33_k4.4.114_42-7.1
      drm-kmp-default-debuginfo-4.9.33_k4.4.114_42-7.1
      ftsteutates-debugsource-20160601-4.2.1
      ftsteutates-kmp-default-20160601_k4.4.114_42-4.2.1
      ftsteutates-kmp-default-debuginfo-20160601_k4.4.114_42-4.2.1
      hdjmod-debugsource-1.28-27.2.1
      hdjmod-kmp-default-1.28_k4.4.114_42-27.2.1
      hdjmod-kmp-default-debuginfo-1.28_k4.4.114_42-27.2.1
      ipset-6.29-4.2.1
      ipset-debuginfo-6.29-4.2.1
      ipset-debugsource-6.29-4.2.1
      ipset-devel-6.29-4.2.1
      ipset-kmp-default-6.29_k4.4.114_42-4.2.1
      ipset-kmp-default-debuginfo-6.29_k4.4.114_42-4.2.1
      libipset3-6.29-4.2.1
      libipset3-debuginfo-6.29-4.2.1
      ndiswrapper-1.59-3.2.1
      ndiswrapper-debuginfo-1.59-3.2.1
      ndiswrapper-debugsource-1.59-3.2.1
      ndiswrapper-kmp-default-1.59_k4.4.114_42-3.2.1
      ndiswrapper-kmp-default-debuginfo-1.59_k4.4.114_42-3.2.1
      pcfclock-0.44-272.2.1
      pcfclock-debuginfo-0.44-272.2.1
      pcfclock-debugsource-0.44-272.2.1
      pcfclock-kmp-default-0.44_k4.4.114_42-272.2.1
      pcfclock-kmp-default-debuginfo-0.44_k4.4.114_42-272.2.1
      sysdig-0.17.0-10.1
      sysdig-debuginfo-0.17.0-10.1
      sysdig-debugsource-0.17.0-10.1
      sysdig-kmp-default-0.17.0_k4.4.114_42-10.1
      sysdig-kmp-default-debuginfo-0.17.0_k4.4.114_42-10.1
      vhba-kmp-debugsource-20161009-9.2.1
      vhba-kmp-default-20161009_k4.4.114_42-9.2.1
      vhba-kmp-default-debuginfo-20161009_k4.4.114_42-9.2.1
      xtables-addons-2.11-4.2.1
      xtables-addons-debuginfo-2.11-4.2.1
      xtables-addons-debugsource-2.11-4.2.1
      xtables-addons-kmp-default-2.11_k4.4.114_42-4.2.1
      xtables-addons-kmp-default-debuginfo-2.11_k4.4.114_42-4.2.1

   - openSUSE Leap 42.3 (noarch):

      dpdk-doc-16.11.1-6.2.1
      ftsteutates-sensors-20160601-4.2.1


References:

   https://www.suse.com/security/cve/CVE-2017-5715.html
   https://bugzilla.suse.com/1068032

-- 

openSUSE: 2018:0745-1: important: various KMPs

March 20, 2018
An update that fixes one vulnerability is now available.

Description

The Spectre Variant 2 in the Linux Kernel is mitigated using "retpolines". This update rebuilds all openSUSE Leap 42.3 KMPs to use "retpolines" and so be able to mitigate the Spectre v2 attack. (bsc#1068032 CVE-2017-5715)

 

Patch

Patch Instructions: To install this openSUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - openSUSE Leap 42.3: zypper in -t patch openSUSE-2018-284=1 To bring your system up-to-date, use "zypper patch".


Package List

- openSUSE Leap 42.3 (i586 x86_64): crash-7.1.8-6.1 crash-debuginfo-7.1.8-6.1 crash-debugsource-7.1.8-6.1 crash-devel-7.1.8-6.1 crash-doc-7.1.8-6.1 crash-eppic-7.1.8-6.1 crash-eppic-debuginfo-7.1.8-6.1 crash-gcore-7.1.8-6.1 crash-gcore-debuginfo-7.1.8-6.1 - openSUSE Leap 42.3 (x86_64): bbswitch-0.8-12.2.1 bbswitch-debugsource-0.8-12.2.1 bbswitch-kmp-default-0.8_k4.4.114_42-12.2.1 bbswitch-kmp-default-debuginfo-0.8_k4.4.114_42-12.2.1 crash-kmp-default-7.1.8_k4.4.114_42-6.1 crash-kmp-default-debuginfo-7.1.8_k4.4.114_42-6.1 dpdk-16.11.1-6.2.1 dpdk-debuginfo-16.11.1-6.2.1 dpdk-debugsource-16.11.1-6.2.1 dpdk-devel-16.11.1-6.2.1 dpdk-devel-debuginfo-16.11.1-6.2.1 dpdk-examples-16.11.1-6.2.1 dpdk-examples-debuginfo-16.11.1-6.2.1 dpdk-kmp-default-16.11.1_k4.4.114_42-6.2.1 dpdk-kmp-default-debuginfo-16.11.1_k4.4.114_42-6.2.1 dpdk-tools-16.11.1-6.2.1 drbd-9.0.8+git.c8bc3670-2.2.1 drbd-debugsource-9.0.8+git.c8bc3670-2.2.1 drbd-kmp-default-9.0.8+git.c8bc3670_k4.4.114_42-2.2.1 drbd-kmp-default-debuginfo-9.0.8+git.c8bc3670_k4.4.114_42-2.2.1 drm-debugsource-4.9.33-7.1 drm-kmp-default-4.9.33_k4.4.114_42-7.1 drm-kmp-default-debuginfo-4.9.33_k4.4.114_42-7.1 ftsteutates-debugsource-20160601-4.2.1 ftsteutates-kmp-default-20160601_k4.4.114_42-4.2.1 ftsteutates-kmp-default-debuginfo-20160601_k4.4.114_42-4.2.1 hdjmod-debugsource-1.28-27.2.1 hdjmod-kmp-default-1.28_k4.4.114_42-27.2.1 hdjmod-kmp-default-debuginfo-1.28_k4.4.114_42-27.2.1 ipset-6.29-4.2.1 ipset-debuginfo-6.29-4.2.1 ipset-debugsource-6.29-4.2.1 ipset-devel-6.29-4.2.1 ipset-kmp-default-6.29_k4.4.114_42-4.2.1 ipset-kmp-default-debuginfo-6.29_k4.4.114_42-4.2.1 libipset3-6.29-4.2.1 libipset3-debuginfo-6.29-4.2.1 ndiswrapper-1.59-3.2.1 ndiswrapper-debuginfo-1.59-3.2.1 ndiswrapper-debugsource-1.59-3.2.1 ndiswrapper-kmp-default-1.59_k4.4.114_42-3.2.1 ndiswrapper-kmp-default-debuginfo-1.59_k4.4.114_42-3.2.1 pcfclock-0.44-272.2.1 pcfclock-debuginfo-0.44-272.2.1 pcfclock-debugsource-0.44-272.2.1 pcfclock-kmp-default-0.44_k4.4.114_42-272.2.1 pcfclock-kmp-default-debuginfo-0.44_k4.4.114_42-272.2.1 sysdig-0.17.0-10.1 sysdig-debuginfo-0.17.0-10.1 sysdig-debugsource-0.17.0-10.1 sysdig-kmp-default-0.17.0_k4.4.114_42-10.1 sysdig-kmp-default-debuginfo-0.17.0_k4.4.114_42-10.1 vhba-kmp-debugsource-20161009-9.2.1 vhba-kmp-default-20161009_k4.4.114_42-9.2.1 vhba-kmp-default-debuginfo-20161009_k4.4.114_42-9.2.1 xtables-addons-2.11-4.2.1 xtables-addons-debuginfo-2.11-4.2.1 xtables-addons-debugsource-2.11-4.2.1 xtables-addons-kmp-default-2.11_k4.4.114_42-4.2.1 xtables-addons-kmp-default-debuginfo-2.11_k4.4.114_42-4.2.1 - openSUSE Leap 42.3 (noarch): dpdk-doc-16.11.1-6.2.1 ftsteutates-sensors-20160601-4.2.1


References

https://www.suse.com/security/cve/CVE-2017-5715.html https://bugzilla.suse.com/1068032--


Severity
Announcement ID: openSUSE-SU-2018:0745-1
Rating: important
Affected Products: openSUSE Leap 42.3

Related News