CVE-2017-1000251: bluetooth l2cap remote code execution vulnerability (blueborne).
This document (7021383) is provided subject to the disclaimer at the end of this document.
Environment
SUSE Linux Enterprise Server 12 Service Pack 1 (SLES 12 SP1)
SUSE Linux Enterprise Server 12 Service Pack 2 (SLES 12 SP2)
SUSE Linux Enterprise Server 12 Service Pack 3 (SLES 12 SP3)
Situation
Resolution
SLES 12 GA LTSS: 3.12.61-52.92.1Affected systems should be updated as soon as possible, a workaround can be to temporarily disable bluetooth support.
SLES 12 SP1 LTSS: 3.12.74-60.64.60.1
SLES 12 SP2: 4.4.74-92.38.1
SLES 12 SP3: 4.4.82-6.6.1
Note however that SUSE Linux Enterprise kernels are built with Stackprotector support which
will catch these kinds of stack overflows and cause a controlled abort.
Cause
Additional Information
Disclaimer
This Support Knowledgebase provides a valuable tool for SUSE customers and parties interested in our products and solutions to acquire information, ideas and learn from one another. Materials are provided for informational, personal or non-commercial use within your organization and are presented "AS IS" WITHOUT WARRANTY OF ANY KIND.
- Document ID:7021383
- Creation Date: 13-Sep-2017
- Modified Date:03-Mar-2020
-
- SUSE Linux Enterprise Server
For questions or concerns with the SUSE Knowledgebase please contact: tidfeedback[at]suse.com