SUSE Linux 內核多個漏洞
發佈日期:
2022年02月14日
1436
觀看次數
風險: 中度風險
類型: 操作系統 - LINUX
於 SUSE Linux Kernel 發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發阻斷服務狀況、繞過保安限制及洩露敏感資料。
影響
- 阻斷服務
- 繞過保安限制
- 資料洩露
受影響之系統或技術
- HPE Helion Openstack 8
- SUSE Linux Enterprise High Availability 12-SP3
- SUSE Linux Enterprise High Performance Computing 12-SP3
- SUSE Linux Enterprise Server 12-SP3
- SUSE Linux Enterprise Server 12-SP3-BCL
- SUSE Linux Enterprise Server 12-SP3-LTSS
- SUSE Linux Enterprise Server 12-SP4
- SUSE Linux Enterprise Server 12-SP5
- SUSE Linux Enterprise Server for SAP 12-SP3
- SUSE Linux Enterprise Server for SAP Applications 12-SP3
- SUSE Linux Enterprise Server for SAP Applications 12-SP4
- SUSE Linux Enterprise Server for SAP Applications 12-SP5
- SUSE OpenStack Cloud 8
- SUSE OpenStack Cloud Crowbar 8
- SUSE CaaS Platform 4.0
- SUSE Enterprise Storage 6
- SUSE Linux Enterprise High Availability 15-SP1
- SUSE Linux Enterprise High Performance Computing 15-SP1
- SUSE Linux Enterprise High Performance Computing 15-SP1-ESPOS
- SUSE Linux Enterprise High Performance Computing 15-SP1-LTSS
- SUSE Linux Enterprise Module for Live Patching 15-SP1
- SUSE Linux Enterprise Server 15-SP1
- SUSE Linux Enterprise Server 15-SP1-BCL
- SUSE Linux Enterprise Server 15-SP1-LTSS
- SUSE Linux Enterprise Server for SAP 15-SP1
- SUSE Linux Enterprise Server for SAP Applications 15-SP1
- SUSE Linux Enterprise Storage 6
- SUSE Manager Proxy 4.0
- SUSE Manager Server 4.0
- SUSE Enterprise Storage 7
- SUSE Linux Enterprise High Availability 15-SP2
- SUSE Linux Enterprise High Performance Computing 15-SP2
- SUSE Linux Enterprise High Performance Computing 15-SP2-ESPOS
- SUSE Linux Enterprise High Performance Computing 15-SP2-LTSS
- SUSE Linux Enterprise Micro 5.0
- SUSE Linux Enterprise Module for Live Patching 15-SP2
- SUSE Linux Enterprise Realtime Extension 15-SP2
- SUSE Linux Enterprise Server 15-SP2
- SUSE Linux Enterprise Server 15-SP2-BCL
- SUSE Linux Enterprise Server 15-SP2-LTSS
- SUSE Linux Enterprise Server for SAP 15-SP2
- SUSE Linux Enterprise Server for SAP Applications 15-SP2
- SUSE Linux Enterprise Storage 7
- SUSE Manager Proxy 4.1
- SUSE Manager Retail Branch Server 4.1
- SUSE Manager Server 4.1
- SUSE Linux Enterprise Desktop 12-SP5
- SUSE Linux Enterprise High Availability 12-SP5
- SUSE Linux Enterprise High Performance Computing 12-SP5
- SUSE Linux Enterprise Live Patching 12-SP5
- SUSE Linux Enterprise Software Development Kit 12-SP5
- SUSE Linux Enterprise Workstation Extension 12-SP5
- SUSE Linux Enterprise High Performance Computing 15-SP3
- SUSE Linux Enterprise Module for Public Cloud 15-SP3
- SUSE Linux Enterprise Server 15-SP3
- SUSE Linux Enterprise Server for SAP Applications 15-SP3
- SUSE Manager Proxy 4.2
- SUSE Manager Server 4.2
- SUSE Linux Enterprise High Availability 15
- SUSE Linux Enterprise High Performance Computing 15
- SUSE Linux Enterprise High Performance Computing 15-ESPOS
- SUSE Linux Enterprise High Performance Computing 15-LTSS
- SUSE Linux Enterprise Module for Live Patching 15
- SUSE Linux Enterprise Server 15
- SUSE Linux Enterprise Server 15-LTSS
- SUSE Linux Enterprise Server for SAP 15
- SUSE Linux Enterprise Server for SAP Applications 15
- SUSE Linux Enterprise Desktop 15-SP3
- SUSE Linux Enterprise High Availability 15-SP3
- SUSE Linux Enterprise High Performance Computing
- SUSE Linux Enterprise Micro 5.1
- SUSE Linux Enterprise Module for Basesystem 15-SP3
- SUSE Linux Enterprise Module for Development Tools 15-SP3
- SUSE Linux Enterprise Module for Legacy Software 15-SP3
- SUSE Linux Enterprise Module for Live Patching 15-SP3
- SUSE Linux Enterprise Server
- SUSE Linux Enterprise Server for SAP Applications
- SUSE Linux Enterprise Workstation Extension 15-SP3
解決方案
在安裝軟體之前,請先瀏覽供應商之網站,以獲得更多詳細資料。
- 安裝供應商提供的修補程式:
- https://www.suse.com/support/update/announcement/2022/suse-su-20220362-1/
- https://www.suse.com/support/update/announcement/2022/suse-su-20220363-1/
- https://www.suse.com/support/update/announcement/2022/suse-su-20220364-1/
- https://www.suse.com/support/update/announcement/2022/suse-su-20220365-1/
- https://www.suse.com/support/update/announcement/2022/suse-su-20220366-1/
- https://www.suse.com/support/update/announcement/2022/suse-su-20220367-1/
- https://www.suse.com/support/update/announcement/2022/suse-su-20220370-1/
漏洞識別碼
- CVE-2018-25020
- CVE-2019-0136
- CVE-2019-15126
- CVE-2020-27820
- CVE-2020-28097
- CVE-2020-35519
- CVE-2021-0920
- CVE-2021-0935
- CVE-2021-22600
- CVE-2021-28711
- CVE-2021-28712
- CVE-2021-28713
- CVE-2021-28714
- CVE-2021-28715
- CVE-2021-33098
- CVE-2021-3564
- CVE-2021-39648
- CVE-2021-39657
- CVE-2021-39685
- CVE-2021-4002
- CVE-2021-4083
- CVE-2021-4135
- CVE-2021-4149
- CVE-2021-4155
- CVE-2021-4159
- CVE-2021-4197
- CVE-2021-4202
- CVE-2021-43975
- CVE-2021-43976
- CVE-2021-44733
- CVE-2021-45095
- CVE-2021-45485
- CVE-2021-45486
- CVE-2022-0286
- CVE-2022-0322
- CVE-2022-0330
- CVE-2022-0435
- CVE-2022-22942
資料來源
相關連結
- https://www.suse.com/support/update/announcement/2022/suse-su-20220362-1/
- https://www.suse.com/support/update/announcement/2022/suse-su-20220363-1/
- https://www.suse.com/support/update/announcement/2022/suse-su-20220364-1/
- https://www.suse.com/support/update/announcement/2022/suse-su-20220365-1/
- https://www.suse.com/support/update/announcement/2022/suse-su-20220366-1/
- https://www.suse.com/support/update/announcement/2022/suse-su-20220367-1/
- https://www.suse.com/support/update/announcement/2022/suse-su-20220370-1/
- https://www.auscert.org.au/bulletins/ESB-2022.0615
- https://www.auscert.org.au/bulletins/ESB-2022.0611
- https://www.auscert.org.au/bulletins/ESB-2022.0612
- https://www.auscert.org.au/bulletins/ESB-2022.0613
- https://www.auscert.org.au/bulletins/ESB-2022.0614
- https://www.auscert.org.au/bulletins/ESB-2022.0610
- https://www.auscert.org.au/bulletins/ESB-2022.0618
分享至