Upstream information

CVE-2014-8709 at MITRE

Description

The ieee80211_fragment function in net/mac80211/tx.c in the Linux kernel before 3.13.5 does not properly maintain a certain tail pointer, which allows remote attackers to obtain sensitive cleartext information by reading packets.

SUSE information

Overall state of this security issue: Analysis

This issue is currently rated as having important severity.

CVSS v2 Scores
  National Vulnerability Database
Base Score 5
Vector AV:N/AC:L/Au:N/C:P/I:N/A:N
Access Vector Network
Access Complexity Low
Authentication None
Confidentiality Impact Partial
Integrity Impact None
Availability Impact None
SUSE Bugzilla entry: 904700 [RESOLVED / FIXED]

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
SUSE Linux Enterprise Desktop 11 SP3
  • kernel-bigsmp-devel >= 3.0.101-0.46.1
  • kernel-default >= 3.0.101-0.46.1
  • kernel-default-base >= 3.0.101-0.46.1
  • kernel-default-devel >= 3.0.101-0.46.1
  • kernel-default-extra >= 3.0.101-0.46.1
  • kernel-pae >= 3.0.101-0.42.1
  • kernel-pae-base >= 3.0.101-0.42.1
  • kernel-pae-devel >= 3.0.101-0.42.1
  • kernel-pae-extra >= 3.0.101-0.42.1
  • kernel-source >= 3.0.101-0.46.1
  • kernel-syms >= 3.0.101-0.46.1
  • kernel-trace-devel >= 3.0.101-0.46.1
  • kernel-xen >= 3.0.101-0.46.1
  • kernel-xen-base >= 3.0.101-0.46.1
  • kernel-xen-devel >= 3.0.101-0.46.1
  • kernel-xen-extra >= 3.0.101-0.46.1
  • xen-kmp-default >= 4.2.5_02_3.0.101_0.46-0.7.9
  • xen-kmp-pae >= 4.2.5_02_3.0.101_0.42-0.7.2
Patchnames:
sledsp3-kernel
SUSE Linux Enterprise Desktop 12 SP1
  • kernel-default >= 3.12.49-11.1
  • kernel-default-devel >= 3.12.49-11.1
  • kernel-default-extra >= 3.12.49-11.1
  • kernel-devel >= 3.12.49-11.1
  • kernel-macros >= 3.12.49-11.1
  • kernel-source >= 3.12.49-11.1
  • kernel-syms >= 3.12.49-11.1
  • kernel-xen >= 3.12.49-11.1
  • kernel-xen-devel >= 3.12.49-11.1
SUSE Linux Enterprise High Availability Extension 11 SP3
  • cluster-network-kmp-bigsmp >= 1.4_3.0.101_0.46-2.27.120
  • cluster-network-kmp-default >= 1.4_3.0.101_0.46-2.27.120
  • cluster-network-kmp-pae >= 1.4_3.0.101_0.42-2.27.115
  • cluster-network-kmp-ppc64 >= 1.4_3.0.101_0.42-2.27.115
  • cluster-network-kmp-trace >= 1.4_3.0.101_0.46-2.27.120
  • cluster-network-kmp-xen >= 1.4_3.0.101_0.46-2.27.120
  • gfs2-kmp-bigsmp >= 2_3.0.101_0.46-0.16.126
  • gfs2-kmp-default >= 2_3.0.101_0.46-0.16.126
  • gfs2-kmp-pae >= 2_3.0.101_0.42-0.16.121
  • gfs2-kmp-ppc64 >= 2_3.0.101_0.42-0.16.121
  • gfs2-kmp-trace >= 2_3.0.101_0.46-0.16.126
  • gfs2-kmp-xen >= 2_3.0.101_0.46-0.16.126
  • ocfs2-kmp-bigsmp >= 1.6_3.0.101_0.46-0.20.120
  • ocfs2-kmp-default >= 1.6_3.0.101_0.46-0.20.120
  • ocfs2-kmp-pae >= 1.6_3.0.101_0.42-0.20.115
  • ocfs2-kmp-ppc64 >= 1.6_3.0.101_0.42-0.20.115
  • ocfs2-kmp-trace >= 1.6_3.0.101_0.46-0.20.120
  • ocfs2-kmp-xen >= 1.6_3.0.101_0.46-0.20.120
Patchnames:
slehasp3-kernel
SUSE Linux Enterprise Real Time Extension 11 SP3
  • cluster-network-kmp-rt >= 1.4_3.0.101_rt130_0.32-2.27.121
  • cluster-network-kmp-rt_trace >= 1.4_3.0.101_rt130_0.32-2.27.121
  • drbd-kmp-rt >= 8.4.4_3.0.101_rt130_0.32-0.22.87
  • drbd-kmp-rt_trace >= 8.4.4_3.0.101_rt130_0.32-0.22.87
  • iscsitarget-kmp-rt >= 1.4.20_3.0.101_rt130_0.32-0.38.106
  • iscsitarget-kmp-rt_trace >= 1.4.20_3.0.101_rt130_0.32-0.38.106
  • kernel-rt >= 3.0.101.rt130-0.32.1
  • kernel-rt-base >= 3.0.101.rt130-0.32.1
  • kernel-rt-devel >= 3.0.101.rt130-0.32.1
  • kernel-rt_trace >= 3.0.101.rt130-0.32.1
  • kernel-rt_trace-base >= 3.0.101.rt130-0.32.1
  • kernel-rt_trace-devel >= 3.0.101.rt130-0.32.1
  • kernel-source-rt >= 3.0.101.rt130-0.32.1
  • kernel-syms-rt >= 3.0.101.rt130-0.32.1
  • lttng-modules-kmp-rt >= 2.1.1_3.0.101_rt130_0.32-0.11.96
  • lttng-modules-kmp-rt_trace >= 2.1.1_3.0.101_rt130_0.32-0.11.96
  • ocfs2-kmp-rt >= 1.6_3.0.101_rt130_0.32-0.20.121
  • ocfs2-kmp-rt_trace >= 1.6_3.0.101_rt130_0.32-0.20.121
  • ofed-kmp-rt >= 1.5.4.1_3.0.101_rt130_0.32-0.13.112
  • ofed-kmp-rt_trace >= 1.5.4.1_3.0.101_rt130_0.32-0.13.112
Patchnames:
slertesp3-kernel
SUSE Linux Enterprise Server 11 SP1-LTSS
  • btrfs-kmp-default >= 0_2.6.32.59_0.13-0.3.163
  • btrfs-kmp-pae >= 0_2.6.32.59_0.13-0.3.163
  • btrfs-kmp-xen >= 0_2.6.32.59_0.13-0.3.163
  • ext4dev-kmp-default >= 0_2.6.32.59_0.13-7.9.130
  • ext4dev-kmp-pae >= 0_2.6.32.59_0.13-7.9.130
  • ext4dev-kmp-trace >= 0_2.6.32.59_0.13-7.9.130
  • ext4dev-kmp-xen >= 0_2.6.32.59_0.13-7.9.130
  • hyper-v-kmp-default >= 0_2.6.32.59_0.13-0.18.39
  • hyper-v-kmp-pae >= 0_2.6.32.59_0.13-0.18.39
  • hyper-v-kmp-trace >= 0_2.6.32.59_0.13-0.18.39
  • kernel-default >= 2.6.32.59-0.19.1
  • kernel-default-base >= 2.6.32.59-0.19.1
  • kernel-default-devel >= 2.6.32.59-0.19.1
  • kernel-default-man >= 2.6.32.59-0.19.1
  • kernel-ec2 >= 2.6.32.59-0.19.1
  • kernel-ec2-base >= 2.6.32.59-0.19.1
  • kernel-ec2-devel >= 2.6.32.59-0.19.1
  • kernel-pae >= 2.6.32.59-0.19.1
  • kernel-pae-base >= 2.6.32.59-0.19.1
  • kernel-pae-devel >= 2.6.32.59-0.19.1
  • kernel-source >= 2.6.32.59-0.19.1
  • kernel-syms >= 2.6.32.59-0.19.1
  • kernel-trace >= 2.6.32.59-0.19.1
  • kernel-trace-base >= 2.6.32.59-0.19.1
  • kernel-trace-devel >= 2.6.32.59-0.19.1
  • kernel-xen >= 2.6.32.59-0.19.1
  • kernel-xen-base >= 2.6.32.59-0.19.1
  • kernel-xen-devel >= 2.6.32.59-0.19.1
  • xen-kmp-default >= 4.0.3_21548_18_2.6.32.59_0.19-0.9.17
  • xen-kmp-pae >= 4.0.3_21548_18_2.6.32.59_0.19-0.9.17
  • xen-kmp-trace >= 4.0.3_21548_18_2.6.32.59_0.19-0.9.17
Patchnames:
slessp1-kernel
SUSE Linux Enterprise Server 11 SP2-LTSS
  • kernel-default >= 3.0.101-0.7.29.1
  • kernel-default-base >= 3.0.101-0.7.29.1
  • kernel-default-devel >= 3.0.101-0.7.29.1
  • kernel-default-man >= 3.0.101-0.7.29.1
  • kernel-ec2 >= 3.0.101-0.7.29.1
  • kernel-ec2-base >= 3.0.101-0.7.29.1
  • kernel-ec2-devel >= 3.0.101-0.7.29.1
  • kernel-pae >= 3.0.101-0.7.29.1
  • kernel-pae-base >= 3.0.101-0.7.29.1
  • kernel-pae-devel >= 3.0.101-0.7.29.1
  • kernel-source >= 3.0.101-0.7.29.1
  • kernel-syms >= 3.0.101-0.7.29.1
  • kernel-trace >= 3.0.101-0.7.29.1
  • kernel-trace-base >= 3.0.101-0.7.29.1
  • kernel-trace-devel >= 3.0.101-0.7.29.1
  • kernel-xen >= 3.0.101-0.7.29.1
  • kernel-xen-base >= 3.0.101-0.7.29.1
  • kernel-xen-devel >= 3.0.101-0.7.29.1
  • xen-kmp-default >= 4.1.6_08_3.0.101_0.7.29-0.5.19
  • xen-kmp-pae >= 4.1.6_08_3.0.101_0.7.29-0.5.19
  • xen-kmp-trace >= 4.1.6_08_3.0.101_0.7.29-0.5.19
Patchnames:
slessp2-kernel
SUSE Linux Enterprise Server 11 SP3
SUSE Linux Enterprise Server for SAP Applications 11 SP3
  • kernel-bigsmp >= 3.0.101-0.46.1
  • kernel-bigsmp-base >= 3.0.101-0.46.1
  • kernel-bigsmp-devel >= 3.0.101-0.46.1
  • kernel-default >= 3.0.101-0.46.1
  • kernel-default-base >= 3.0.101-0.46.1
  • kernel-default-devel >= 3.0.101-0.46.1
  • kernel-default-man >= 3.0.101-0.42.1
  • kernel-ec2 >= 3.0.101-0.46.1
  • kernel-ec2-base >= 3.0.101-0.46.1
  • kernel-ec2-devel >= 3.0.101-0.46.1
  • kernel-pae >= 3.0.101-0.42.1
  • kernel-pae-base >= 3.0.101-0.42.1
  • kernel-pae-devel >= 3.0.101-0.42.1
  • kernel-ppc64 >= 3.0.101-0.42.1
  • kernel-ppc64-base >= 3.0.101-0.42.1
  • kernel-ppc64-devel >= 3.0.101-0.42.1
  • kernel-source >= 3.0.101-0.46.1
  • kernel-syms >= 3.0.101-0.46.1
  • kernel-trace >= 3.0.101-0.46.1
  • kernel-trace-base >= 3.0.101-0.46.1
  • kernel-trace-devel >= 3.0.101-0.46.1
  • kernel-xen >= 3.0.101-0.46.1
  • kernel-xen-base >= 3.0.101-0.46.1
  • kernel-xen-devel >= 3.0.101-0.46.1
  • xen-kmp-default >= 4.2.5_02_3.0.101_0.46-0.7.9
  • xen-kmp-pae >= 4.2.5_02_3.0.101_0.42-0.7.2
Patchnames:
slessp3-kernel
SUSE Linux Enterprise Server 11 SP4
  • kernel-default >= 3.0.101-63.1
  • kernel-default-base >= 3.0.101-63.1
  • kernel-default-devel >= 3.0.101-63.1
  • kernel-default-man >= 3.0.101-63.1
  • kernel-pae >= 3.0.101-63.1
  • kernel-pae-base >= 3.0.101-63.1
  • kernel-pae-devel >= 3.0.101-63.1
  • kernel-ppc64 >= 3.0.101-63.1
  • kernel-ppc64-base >= 3.0.101-63.1
  • kernel-ppc64-devel >= 3.0.101-63.1
  • kernel-source >= 3.0.101-63.1
  • kernel-syms >= 3.0.101-63.1
  • kernel-trace >= 3.0.101-63.1
  • kernel-trace-base >= 3.0.101-63.1
  • kernel-trace-devel >= 3.0.101-63.1
  • kernel-xen >= 3.0.101-63.1
  • kernel-xen-base >= 3.0.101-63.1
  • kernel-xen-devel >= 3.0.101-63.1
SUSE Linux Enterprise Server 12 SP1
  • kernel-default >= 3.12.49-11.1
  • kernel-default-base >= 3.12.49-11.1
  • kernel-default-devel >= 3.12.49-11.1
  • kernel-default-man >= 3.12.49-11.1
  • kernel-devel >= 3.12.49-11.1
  • kernel-macros >= 3.12.49-11.1
  • kernel-source >= 3.12.49-11.1
  • kernel-syms >= 3.12.49-11.1
  • kernel-xen >= 3.12.49-11.1
  • kernel-xen-base >= 3.12.49-11.1
  • kernel-xen-devel >= 3.12.49-11.1
SUSE Linux Enterprise Server for VMWare 11 SP3
  • kernel-bigsmp >= 3.0.101-0.47.55.1
  • kernel-bigsmp-base >= 3.0.101-0.47.55.1
  • kernel-bigsmp-devel >= 3.0.101-0.47.55.1
  • kernel-default >= 3.0.101-0.46.1
  • kernel-default-base >= 3.0.101-0.46.1
  • kernel-default-devel >= 3.0.101-0.46.1
  • kernel-default-man >= 3.0.101-0.40.1
  • kernel-ec2 >= 3.0.101-0.40.1
  • kernel-ec2-base >= 3.0.101-0.40.1
  • kernel-ec2-devel >= 3.0.101-0.40.1
  • kernel-pae >= 3.0.101-0.42.1
  • kernel-pae-base >= 3.0.101-0.42.1
  • kernel-pae-devel >= 3.0.101-0.42.1
  • kernel-ppc64 >= 3.0.101-0.40.1
  • kernel-ppc64-base >= 3.0.101-0.40.1
  • kernel-ppc64-devel >= 3.0.101-0.40.1
  • kernel-source >= 3.0.101-0.46.1
  • kernel-syms >= 3.0.101-0.46.1
  • kernel-trace >= 3.0.101-0.46.1
  • kernel-trace-base >= 3.0.101-0.46.1
  • kernel-trace-devel >= 3.0.101-0.46.1
  • kernel-xen >= 3.0.101-0.40.1
  • kernel-xen-base >= 3.0.101-0.40.1
  • kernel-xen-devel >= 3.0.101-0.46.1
  • xen-kmp-default >= 4.2.4_04_3.0.101_0.40-0.7.3
  • xen-kmp-pae >= 4.2.4_04_3.0.101_0.40-0.7.3
Patchnames:
slessp3-kernel
SUSE Linux Enterprise Software Development Kit 11 SP4
  • kernel-docs >= 3.0.101-63.1
SUSE Linux Enterprise Software Development Kit 12 SP1
  • kernel-docs >= 3.12.49-11.1
  • kernel-obs-build >= 3.12.49-11.2
SUSE Linux Enterprise Workstation Extension 12 SP1
  • kernel-default-extra >= 3.12.49-11.1


Status of this issue by product and package

Please note that this evaluation state might be work in progress, incomplete or outdated. Also information for service packs in the LTSS phase is only included for issues meeting the LTSS criteria. If in doubt, feel free to contact us for clarification.

Product(s) Source package State
Carwos (1) kernel-source-rt Analysis
SLE-HPC (12) kernel-default Released
SLE-HPC (12) kernel-source Released
SLE-HPC (12) kernel-source-azure Analysis
SLED (12) kernel-default Analysis
SLED (12) kernel-source Analysis
SLES (12) kernel-default Analysis
SLES (12) kernel-source Analysis
SLES (12) kernel-source-azure Analysis
SLES-BCL (12) kernel-default Analysis
SLES-BCL (12) kernel-source Analysis
SLES-BCL (12) kernel-source-azure Analysis
SLES-ESPOS (12) kernel-default Analysis
SLES-ESPOS (12) kernel-source Analysis
SLES-ESPOS (12) kernel-source-azure Analysis
SLES-LTSS (12) kernel-default Analysis
SLES-LTSS (12) kernel-source Analysis
SLES-LTSS (12) kernel-source-azure Analysis
SLES-LTSS (15) kernel-default Analysis
SLES-LTSS (15) kernel-source Analysis
SLES-LTSS (15) kernel-source-azure Analysis
SLES-LTSS-ERICSSON (12) kernel-default Analysis
SLES-LTSS-ERICSSON (12) kernel-source Analysis
SLES-LTSS-SAP (12) kernel-default Analysis
SLES-LTSS-SAP (12) kernel-source Analysis
SLES-for-VMware (11) kernel-default Released
SLES-for-VMware (11) kernel-source Released
SLES_BCL (15) kernel-default Analysis
SLES_BCL (15) kernel-source Analysis
SLES_BCL (15) kernel-source-azure Analysis
SLES_SAP (12) kernel-default Analysis
SLES_SAP (12) kernel-source Analysis
SLES_SAP (12) kernel-source-azure Analysis
SLES_SAP (15) kernel-default Analysis
SLES_SAP (15) kernel-source Analysis
SLES_SAP (15) kernel-source-azure Analysis
SLE_HPC-ESPOS (15) kernel-default Analysis
SLE_HPC-ESPOS (15) kernel-source Analysis
SLE_HPC-LTSS (15) kernel-default Analysis
SLE_HPC-LTSS (15) kernel-source Analysis
SLE_HPC-LTSS (15) kernel-source-azure Analysis
SUSE-Linux-Enterprise-RT (12) kernel-source-rt Unsupported
SUSE-Manager-Proxy (4.0) kernel-default Unsupported
SUSE-Manager-Proxy (4.0) kernel-source Unsupported
SUSE-Manager-Proxy (4.0) kernel-source-azure Unsupported
SUSE-Manager-Retail-Branch-Server (4.0) kernel-default Unsupported
SUSE-Manager-Retail-Branch-Server (4.0) kernel-source Unsupported
SUSE-Manager-Retail-Branch-Server (4.0) kernel-source-azure Unsupported
SUSE-Manager-Server (4.0) kernel-default Unsupported
SUSE-Manager-Server (4.0) kernel-source Unsupported
SUSE-Manager-Server (4.0) kernel-source-azure Unsupported
SUSE_SLED (11) kernel-default Released
SUSE_SLED (11) kernel-source Released
SUSE_SLES (11) kernel-default Released
SUSE_SLES (11) kernel-source Released
SUSE_SLES_LTSS (11) kernel-default Analysis
SUSE_SLES_LTSS (11) kernel-source Analysis
SUSE_SLES_SAP (11) kernel-default Unsupported
SUSE_SLES_SAP (11) kernel-source Unsupported
caasp (4.0) kernel-default Analysis
caasp (4.0) kernel-source Analysis
caasp (4.0) kernel-source-azure Analysis
hpe-helion-openstack (8) kernel-default Analysis
hpe-helion-openstack (8) kernel-source Analysis
hpe-helion-openstack (8) kernel-source-azure Analysis
ses (5) kernel-default Unsupported
ses (5) kernel-source Unsupported
ses (5) kernel-source-azure Unsupported
ses (6) kernel-default Analysis
ses (6) kernel-source Analysis
ses (6) kernel-source-azure Analysis
sle-module-basesystem (15) kernel-default Analysis
sle-module-basesystem (15) kernel-source Analysis
sle-module-development-tools (15) kernel-default Analysis
sle-module-development-tools (15) kernel-source Analysis
sle-module-public-cloud (15) kernel-source-azure Analysis
sle-module-rt (15) kernel-source-rt Unsupported
sle-pos (11) kernel-default Analysis
sle-pos (11) kernel-source Analysis
sle-pos (12) kernel-default Unsupported
sle-pos (12) kernel-source Unsupported
suse-openstack-cloud (7) kernel-default Unsupported
suse-openstack-cloud (7) kernel-source Unsupported
suse-openstack-cloud (8) kernel-default Analysis
suse-openstack-cloud (8) kernel-source Analysis
suse-openstack-cloud (8) kernel-source-azure Analysis
suse-openstack-cloud (9) kernel-default Analysis
suse-openstack-cloud (9) kernel-source Analysis
suse-openstack-cloud (9) kernel-source-azure Analysis
suse-openstack-cloud-crowbar (8) kernel-default Analysis
suse-openstack-cloud-crowbar (8) kernel-source Analysis
suse-openstack-cloud-crowbar (8) kernel-source-azure Analysis
suse-openstack-cloud-crowbar (9) kernel-default Analysis
suse-openstack-cloud-crowbar (9) kernel-source Analysis
suse-openstack-cloud-crowbar (9) kernel-source-azure Analysis