Novell Home

CVE-2012-6540

Common Vulnerabilities and Exposures

[Previous] [Index] [Next]

Upstream information

CVE-2012-6540 at MITRE

Description

The do_ip_vs_get_ctl function in net/netfilter/ipvs/ip_vs_ctl.c in the Linux kernel before 3.6 does not initialize a certain structure for IP_VS_SO_GET_TIMEOUT commands, which allows local users to obtain sensitive information from kernel stack memory via a crafted application.

NVD CVSS v2 Base Score: 1.9 (AV:L/AC:M/Au:N/C:P/I:N/A:N)

Novell/SUSE information

Novell Bugzilla entry: 809892

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
SUSE Linux Enterprise Server 10 SP3 DEBUGINFO
  • kernel-default-debuginfo >= 2.6.16.60-0.113.1
Builds
ZYPP Patch Nr: 8755
SUSE Linux Enterprise Server 10 SP3 LTSS for IBM zSeries 64bit
  • kernel-default >= 2.6.16.60-0.113.1
  • kernel-source >= 2.6.16.60-0.113.1
  • kernel-syms >= 2.6.16.60-0.113.1
Builds
ZYPP Patch Nr: 8755
SLE 11 SP1 DEBUGINFO
  • kernel-default-debuginfo >= 2.6.32.59-0.9.1
  • kernel-default-debugsource >= 2.6.32.59-0.9.1
  • kernel-ec2-debuginfo >= 2.6.32.59-0.9.1
  • kernel-ec2-debugsource >= 2.6.32.59-0.9.1
  • kernel-trace-debuginfo >= 2.6.32.59-0.9.1
  • kernel-trace-debugsource >= 2.6.32.59-0.9.1
  • kernel-xen-debuginfo >= 2.6.32.59-0.9.1
  • kernel-xen-debugsource >= 2.6.32.59-0.9.1
Builds
SAT Patch Nr: 8849
SUSE Linux Enterprise Server 11 SP1 LTSS
  • btrfs-kmp-default >= 0_2.6.32.59_0.9-0.3.151
  • btrfs-kmp-xen >= 0_2.6.32.59_0.9-0.3.151
  • ext4dev-kmp-default >= 0_2.6.32.59_0.9-7.9.118
  • ext4dev-kmp-trace >= 0_2.6.32.59_0.9-7.9.118
  • ext4dev-kmp-xen >= 0_2.6.32.59_0.9-7.9.118
  • hyper-v-kmp-default >= 0_2.6.32.59_0.9-0.18.37
  • hyper-v-kmp-trace >= 0_2.6.32.59_0.9-0.18.37
  • kernel-default >= 2.6.32.59-0.9.1
  • kernel-default-base >= 2.6.32.59-0.9.1
  • kernel-default-devel >= 2.6.32.59-0.9.1
  • kernel-ec2 >= 2.6.32.59-0.9.1
  • kernel-ec2-base >= 2.6.32.59-0.9.1
  • kernel-ec2-devel >= 2.6.32.59-0.9.1
  • kernel-source >= 2.6.32.59-0.9.1
  • kernel-syms >= 2.6.32.59-0.9.1
  • kernel-trace >= 2.6.32.59-0.9.1
  • kernel-trace-base >= 2.6.32.59-0.9.1
  • kernel-trace-devel >= 2.6.32.59-0.9.1
  • kernel-xen >= 2.6.32.59-0.9.1
  • kernel-xen-base >= 2.6.32.59-0.9.1
  • kernel-xen-devel >= 2.6.32.59-0.9.1
Builds
SAT Patch Nr: 8849
SLE 11 SERVER Unsupported Extras
  • kernel-default-extra >= 2.6.32.59-0.9.1
  • kernel-pae-extra >= 2.6.32.59-0.9.1
  • kernel-xen-extra >= 2.6.32.59-0.9.1
Builds
SAT Patch Nr: 8850
SLE 11 SERVER Unsupported Extras
  • kernel-default-extra >= 2.6.32.59-0.9.1
Builds
SAT Patch Nr: 8851
SUSE Linux Enterprise Server 10 SP3 DEBUGINFO
  • kernel-debug-debuginfo >= 2.6.16.60-0.113.1
  • kernel-default-debuginfo >= 2.6.16.60-0.113.1
  • kernel-kdump-debuginfo >= 2.6.16.60-0.113.1
  • kernel-smp-debuginfo >= 2.6.16.60-0.113.1
  • kernel-source-debuginfo >= 2.6.16.60-0.113.1
  • kernel-xen-debuginfo >= 2.6.16.60-0.113.1
Builds
ZYPP Patch Nr: 8756
SUSE Linux Enterprise Server 10 SP3 LTSS for AMD64 and Intel EM64T
  • kernel-debug >= 2.6.16.60-0.113.1
  • kernel-default >= 2.6.16.60-0.113.1
  • kernel-kdump >= 2.6.16.60-0.113.1
  • kernel-smp >= 2.6.16.60-0.113.1
  • kernel-source >= 2.6.16.60-0.113.1
  • kernel-syms >= 2.6.16.60-0.113.1
  • kernel-xen >= 2.6.16.60-0.113.1
Builds
ZYPP Patch Nr: 8756
SUSE Linux Enterprise 10 SP4 DEBUGINFO for IBM zSeries 64bit
  • kernel-default-debuginfo >= 2.6.16.60-0.105.1.s390x
Builds
ZYPP Patch Nr: 8816
SUSE Linux Enterprise Server 10 SP4 LTSS for IBM zSeries 64bit
  • kernel-default >= 2.6.16.60-0.105.1.s390x
  • kernel-source >= 2.6.16.60-0.105.1.s390x
  • kernel-syms >= 2.6.16.60-0.105.1.s390x
Builds
ZYPP Patch Nr: 8816
SLE 11 SERVER Unsupported Extras
  • kernel-default-extra >= 2.6.32.59-0.9.1
  • kernel-xen-extra >= 2.6.32.59-0.9.1
Builds
SAT Patch Nr: 8852
SLE 11 SP1 DEBUGINFO
  • kernel-default-debuginfo >= 2.6.32.59-0.9.1
  • kernel-default-debugsource >= 2.6.32.59-0.9.1
  • kernel-ec2-debuginfo >= 2.6.32.59-0.9.1
  • kernel-ec2-debugsource >= 2.6.32.59-0.9.1
  • kernel-pae-debuginfo >= 2.6.32.59-0.9.1
  • kernel-pae-debugsource >= 2.6.32.59-0.9.1
  • kernel-trace-debuginfo >= 2.6.32.59-0.9.1
  • kernel-trace-debugsource >= 2.6.32.59-0.9.1
  • kernel-xen-debuginfo >= 2.6.32.59-0.9.1
  • kernel-xen-debugsource >= 2.6.32.59-0.9.1
Builds
SAT Patch Nr: 8847
SUSE Linux Enterprise Server 11 SP1 LTSS
  • btrfs-kmp-default >= 0_2.6.32.59_0.9-0.3.151
  • btrfs-kmp-pae >= 0_2.6.32.59_0.9-0.3.151
  • btrfs-kmp-xen >= 0_2.6.32.59_0.9-0.3.151
  • ext4dev-kmp-default >= 0_2.6.32.59_0.9-7.9.118
  • ext4dev-kmp-pae >= 0_2.6.32.59_0.9-7.9.118
  • ext4dev-kmp-trace >= 0_2.6.32.59_0.9-7.9.118
  • ext4dev-kmp-xen >= 0_2.6.32.59_0.9-7.9.118
  • hyper-v-kmp-default >= 0_2.6.32.59_0.9-0.18.37
  • hyper-v-kmp-pae >= 0_2.6.32.59_0.9-0.18.37
  • hyper-v-kmp-trace >= 0_2.6.32.59_0.9-0.18.37
  • kernel-default >= 2.6.32.59-0.9.1
  • kernel-default-base >= 2.6.32.59-0.9.1
  • kernel-default-devel >= 2.6.32.59-0.9.1
  • kernel-ec2 >= 2.6.32.59-0.9.1
  • kernel-ec2-base >= 2.6.32.59-0.9.1
  • kernel-ec2-devel >= 2.6.32.59-0.9.1
  • kernel-pae >= 2.6.32.59-0.9.1
  • kernel-pae-base >= 2.6.32.59-0.9.1
  • kernel-pae-devel >= 2.6.32.59-0.9.1
  • kernel-source >= 2.6.32.59-0.9.1
  • kernel-syms >= 2.6.32.59-0.9.1
  • kernel-trace >= 2.6.32.59-0.9.1
  • kernel-trace-base >= 2.6.32.59-0.9.1
  • kernel-trace-devel >= 2.6.32.59-0.9.1
  • kernel-xen >= 2.6.32.59-0.9.1
  • kernel-xen-base >= 2.6.32.59-0.9.1
  • kernel-xen-devel >= 2.6.32.59-0.9.1
Builds
SAT Patch Nr: 8847
SUSE CORE 9 for AMD64 and Intel EM64T
  • kernel-default >= 2.6.5-7.286.TDC.53
  • kernel-default-debug >= 2.6.5-7.286.TDC.53
  • kernel-smp >= 2.6.5-7.286.TDC.53
  • kernel-smp-debug >= 2.6.5-7.286.TDC.53
  • kernel-source >= 2.6.5-7.286.TDC.53
  • kernel-syms >= 2.6.5-7.286.TDC.53
Builds
YOU Patch Nr: 12957
SUSE Linux Enterprise 10 SP4 DEBUGINFO for x86
  • kernel-bigsmp-debuginfo >= 2.6.16.60-0.105.1.i586
  • kernel-debug-debuginfo >= 2.6.16.60-0.105.1.i586
  • kernel-default-debuginfo >= 2.6.16.60-0.105.1.i586
  • kernel-kdump-debuginfo >= 2.6.16.60-0.105.1.i586
  • kernel-kdumppae-debuginfo >= 2.6.16.60-0.105.1.i586
  • kernel-smp-debuginfo >= 2.6.16.60-0.105.1.i586
  • kernel-source-debuginfo >= 2.6.16.60-0.105.1.i586
  • kernel-vmi-debuginfo >= 2.6.16.60-0.105.1.i586
  • kernel-vmipae-debuginfo >= 2.6.16.60-0.105.1.i586
  • kernel-xen-debuginfo >= 2.6.16.60-0.105.1.i586
  • kernel-xenpae-debuginfo >= 2.6.16.60-0.105.1.i586
Builds
ZYPP Patch Nr: 8817
SUSE Linux Enterprise Server 10 SP4 LTSS for x86
  • kernel-bigsmp >= 2.6.16.60-0.105.1.i586
  • kernel-debug >= 2.6.16.60-0.105.1.i586
  • kernel-default >= 2.6.16.60-0.105.1.i586
  • kernel-kdump >= 2.6.16.60-0.105.1.i586
  • kernel-kdumppae >= 2.6.16.60-0.105.1.i586
  • kernel-smp >= 2.6.16.60-0.105.1.i586
  • kernel-source >= 2.6.16.60-0.105.1.i586
  • kernel-syms >= 2.6.16.60-0.105.1.i586
  • kernel-vmi >= 2.6.16.60-0.105.1.i586
  • kernel-vmipae >= 2.6.16.60-0.105.1.i586
  • kernel-xen >= 2.6.16.60-0.105.1.i586
  • kernel-xenpae >= 2.6.16.60-0.105.1.i586
Builds
ZYPP Patch Nr: 8817
SLE 11 SP1 DEBUGINFO
  • kernel-default-debuginfo >= 2.6.32.59-0.9.1
  • kernel-default-debugsource >= 2.6.32.59-0.9.1
  • kernel-trace-debuginfo >= 2.6.32.59-0.9.1
  • kernel-trace-debugsource >= 2.6.32.59-0.9.1
Builds
SAT Patch Nr: 8848
SUSE Linux Enterprise Server 11 SP1 LTSS
  • btrfs-kmp-default >= 0_2.6.32.59_0.9-0.3.151
  • ext4dev-kmp-default >= 0_2.6.32.59_0.9-7.9.118
  • ext4dev-kmp-trace >= 0_2.6.32.59_0.9-7.9.118
  • kernel-default >= 2.6.32.59-0.9.1
  • kernel-default-base >= 2.6.32.59-0.9.1
  • kernel-default-devel >= 2.6.32.59-0.9.1
  • kernel-default-man >= 2.6.32.59-0.9.1
  • kernel-source >= 2.6.32.59-0.9.1
  • kernel-syms >= 2.6.32.59-0.9.1
  • kernel-trace >= 2.6.32.59-0.9.1
  • kernel-trace-base >= 2.6.32.59-0.9.1
  • kernel-trace-devel >= 2.6.32.59-0.9.1
Builds
SAT Patch Nr: 8848
SUSE Linux Enterprise Server 10 SP3 DEBUGINFO
  • kernel-bigsmp-debuginfo >= 2.6.16.60-0.113.1
  • kernel-debug-debuginfo >= 2.6.16.60-0.113.1
  • kernel-default-debuginfo >= 2.6.16.60-0.113.1
  • kernel-kdump-debuginfo >= 2.6.16.60-0.113.1
  • kernel-kdumppae-debuginfo >= 2.6.16.60-0.113.1
  • kernel-smp-debuginfo >= 2.6.16.60-0.113.1
  • kernel-source-debuginfo >= 2.6.16.60-0.113.1
  • kernel-vmi-debuginfo >= 2.6.16.60-0.113.1
  • kernel-vmipae-debuginfo >= 2.6.16.60-0.113.1
  • kernel-xen-debuginfo >= 2.6.16.60-0.113.1
  • kernel-xenpae-debuginfo >= 2.6.16.60-0.113.1
Builds
ZYPP Patch Nr: 8754
SUSE Linux Enterprise Server 10 SP3 LTSS for x86
  • kernel-bigsmp >= 2.6.16.60-0.113.1
  • kernel-debug >= 2.6.16.60-0.113.1
  • kernel-default >= 2.6.16.60-0.113.1
  • kernel-kdump >= 2.6.16.60-0.113.1
  • kernel-kdumppae >= 2.6.16.60-0.113.1
  • kernel-smp >= 2.6.16.60-0.113.1
  • kernel-source >= 2.6.16.60-0.113.1
  • kernel-syms >= 2.6.16.60-0.113.1
  • kernel-vmi >= 2.6.16.60-0.113.1
  • kernel-vmipae >= 2.6.16.60-0.113.1
  • kernel-xen >= 2.6.16.60-0.113.1
  • kernel-xenpae >= 2.6.16.60-0.113.1
Builds
ZYPP Patch Nr: 8754

List of products where fixes are in QA

SUSE Linux Enterprise Server 10 SP3 DEBUGINFO
SUSE Linux Enterprise Server 10 SP3 DEBUGINFO
SUSE Linux Enterprise Server 10 SP3 DEBUGINFO
SUSE Linux Enterprise Server 10 SP3 LTSS for AMD64 and Intel EM64T
SUSE Linux Enterprise Server 10 SP3 LTSS for IBM zSeries 64bit
SUSE Linux Enterprise Server 10 SP3 LTSS for x86

© 2014 Novell