Bugzilla – Bug 899458
VUL-0: CVE-2014-7284: kernel: in kernel randomness net_get_random_once bad due to jump labels(?)
Last modified: 2016-04-27 19:11:40 UTC
via oss-sec http://secondlookforensics.com/ngro-linux-kernel-bug/ get_random_nonce style functions seem to be patched out due to jump label optimizations introduced by: https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=a48e42920ff38bc90bbf75143fff4555723d4540 fix is in: https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/include/linux/net.h?id=3d4405226d27b3a215e4d03cfa51f536244e5de7 Only 3.13 and 3.14 affected apparently, so neither SLE12 nor openSUSE affected.
This seems to be 3.13+ material so nothing to be done for TD branches
bugbot adjusting priority
CVE-2014-7284
none of our products are affected.