openSUSE Security Update: Security update for kernel modules ______________________________________________________________________________
Announcement ID: openSUSE-SU-2018:1502-1 Rating: moderate References: #1068032 Cross-References: CVE-2017-5715 Affected Products: openSUSE Leap 42.3 ______________________________________________________________________________
An update that fixes one vulnerability is now available.
Description:
This update provides rebuilt kernel modules for openSUSE Leap 42.3 with retpoline enablement to address Spectre Variant 2 (CVE-2017-5715 bsc#1068032).
Patch Instructions:
To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 42.3:
zypper in -t patch openSUSE-2018-551=1
Package List:
- openSUSE Leap 42.3 (i586 x86_64):
crash-7.1.8-8.1 crash-debuginfo-7.1.8-8.1 crash-debugsource-7.1.8-8.1 crash-devel-7.1.8-8.1 crash-doc-7.1.8-8.1 crash-eppic-7.1.8-8.1 crash-eppic-debuginfo-7.1.8-8.1 crash-gcore-7.1.8-8.1 crash-gcore-debuginfo-7.1.8-8.1
- openSUSE Leap 42.3 (noarch):
ftsteutates-sensors-20160601-4.4.1
- openSUSE Leap 42.3 (x86_64):
bbswitch-0.8-12.4.1 bbswitch-debugsource-0.8-12.4.1 bbswitch-kmp-default-0.8_k4.4.132_53-12.4.1 bbswitch-kmp-default-debuginfo-0.8_k4.4.132_53-12.4.1 crash-kmp-default-7.1.8_k4.4.132_53-8.1 crash-kmp-default-debuginfo-7.1.8_k4.4.132_53-8.1 ftsteutates-debugsource-20160601-4.4.1 ftsteutates-kmp-default-20160601_k4.4.132_53-4.4.1 ftsteutates-kmp-default-debuginfo-20160601_k4.4.132_53-4.4.1 hdjmod-debugsource-1.28-27.4.1 hdjmod-kmp-default-1.28_k4.4.132_53-27.4.1 hdjmod-kmp-default-debuginfo-1.28_k4.4.132_53-27.4.1 ipset-6.29-4.4.1 ipset-debuginfo-6.29-4.4.1 ipset-debugsource-6.29-4.4.1 ipset-devel-6.29-4.4.1 ipset-kmp-default-6.29_k4.4.132_53-4.4.1 ipset-kmp-default-debuginfo-6.29_k4.4.132_53-4.4.1 libipset3-6.29-4.4.1 libipset3-debuginfo-6.29-4.4.1 lttng-modules-2.7.1-6.2.1 lttng-modules-debugsource-2.7.1-6.2.1 lttng-modules-kmp-default-2.7.1_k4.4.132_53-6.2.1 lttng-modules-kmp-default-debuginfo-2.7.1_k4.4.132_53-6.2.1 ndiswrapper-1.59-3.4.1 ndiswrapper-debuginfo-1.59-3.4.1 ndiswrapper-debugsource-1.59-3.4.1 ndiswrapper-kmp-default-1.59_k4.4.132_53-3.4.1 ndiswrapper-kmp-default-debuginfo-1.59_k4.4.132_53-3.4.1 pcfclock-0.44-272.4.1 pcfclock-debuginfo-0.44-272.4.1 pcfclock-debugsource-0.44-272.4.1 pcfclock-kmp-default-0.44_k4.4.132_53-272.4.1 pcfclock-kmp-default-debuginfo-0.44_k4.4.132_53-272.4.1 sysdig-0.17.0-12.1 sysdig-debuginfo-0.17.0-12.1 sysdig-debugsource-0.17.0-12.1 sysdig-kmp-default-0.17.0_k4.4.132_53-12.1 sysdig-kmp-default-debuginfo-0.17.0_k4.4.132_53-12.1 vhba-kmp-debugsource-20161009-9.4.1 vhba-kmp-default-20161009_k4.4.132_53-9.4.1 vhba-kmp-default-debuginfo-20161009_k4.4.132_53-9.4.1 xtables-addons-2.11-4.4.1 xtables-addons-debuginfo-2.11-4.4.1 xtables-addons-debugsource-2.11-4.4.1 xtables-addons-kmp-default-2.11_k4.4.132_53-4.4.1 xtables-addons-kmp-default-debuginfo-2.11_k4.4.132_53-4.4.1
References:
https://www.suse.com/security/cve/CVE-2017-5715.html https://bugzilla.suse.com/1068032