SUSE-SU-2017:0951-1
Dashboard / Vulnerabilities / SUSE-SU-2017:0951-1
SUSE-SU-2017:0951-1
Summary: Security update for dracut
Details: This update for dracut fixes the following issues: Security issues fixed: - CVE-2016-8637: When the early microcode loading was enabled during initrd creation, the initrd would be read-only available for all users, allowing local users to retrieve secrets stored in the initial ramdisk. (bsc#1008340) Non security issues fixed: - Remove zlib module as requirement. (bsc#1020063) - Unlimit TaskMax for xfs_repair in emergency shell. (bsc#1019938) - Resolve symbolic links for -i and -k parameters. (bsc#902375) - Enhance purge-kernels script to handle kgraft patches. (bsc#1017141) - Allow booting from degraded MD arrays with systemd. (bsc#1017695) - Allow booting on s390x with fips=1 on the kernel command line. (bnc#1021687) - Start multipath services before local-fs-pre.target. (bsc#1005410, bsc#1006118, bsc#1007925) - Fix /sbin/installkernel to handle kernel packages built with 'make bin-rpmpkg'. (bsc#1008648)
References: https://www.suse.com/support/update/announcement/2017/suse-su-20170951-1/, https://bugzilla.suse.com/1005410, https://bugzilla.suse.com/1006118, https://bugzilla.suse.com/1007925, https://bugzilla.suse.com/1008340, https://bugzilla.suse.com/1008648, https://bugzilla.suse.com/1017141, https://bugzilla.suse.com/1017695, https://bugzilla.suse.com/1019938, https://bugzilla.suse.com/1020063, https://bugzilla.suse.com/1021687, https://bugzilla.suse.com/902375, https://www.suse.com/security/cve/CVE-2016-8637
Affected packages
Package
Name: dracut
Purl: pkg:rpm/suse/dracut&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP2
Affected ranges
Type: ECOSYSTEM
Events:
