Alerts This Week
Warning Icon 1 664
Alerts This Week
Warning Icon 1 664

openSUSE Leap 15.2: 2020:1062-1 Important Kernel Security Fix

opensuse
Calendar Grey July 26, 2020
Dist Opensuse Esm H88
The latest security patch for openSUSE Leap 15.2 addresses severe vulnerabilities in the kernel, providing essential improvements and enhancements.
An update that solves two vulnerabilities and has 55 fixes is now available.

Description

The openSUSE Leap 15.2 was updated to receive various security and

bugfixes.

The following security bugs were fixed:

- CVE-2020-15393: usbtest_disconnect in drivers/usb/misc/usbtest.c had a

memory leak, aka CID-28ebeb8db770 (bnc#1173514).

- CVE-2020-12771: btree_gc_coalesce in drivers/md/bcache/btree.c had a

deadlock if a coalescing operation fails (bnc#1171732).

The following non-security bugs were fixed:

- ACPI: configfs: Disallow loading ACPI tables when locked down

(git-fixes).

- ACPI: sysfs: Fix pm_profile_attr type (git-fixes).

- aio: fix async fsync creds (bsc#1173828).

- ALSA: hda: Add NVIDIA codec IDs 9a & 9d through a0 to patch table

(git-fixes).

- ALSA: hda/hdmi: fix failures at PCM open on Intel ICL and later

(git-fixes).

- ALSA: hda/hdmi: improve debug traces for stream lookups (git-fixes).

- ALSA: hda - let hs_mic be picked ahead of hp_mic (git-fixes).

- ALSA: hda/realtek: Add mute LED and micmute...

Read the Full Advisory

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Leap 15.2:

zypper in -t patch openSUSE-2020-1062=1

Package List

- openSUSE Leap 15.2 (x86_64):

kernel-debug-5.3.18-lp152.33.1

kernel-debug-debuginfo-5.3.18-lp152.33.1

kernel-debug-debugsource-5.3.18-lp152.33.1

kernel-debug-devel-5.3.18-lp152.33.1

kernel-debug-devel-debuginfo-5.3.18-lp152.33.1

kernel-default-5.3.18-lp152.33.1

kernel-default-base-5.3.18-lp152.33.1.lp152.8.4.4

kernel-default-base-rebuild-5.3.18-lp152.33.1.lp152.8.4.4

kernel-default-debuginfo-5.3.18-lp152.33.1

kernel-default-debugsource-5.3.18-lp152.33.1

kernel-default-devel-5.3.18-lp152.33.1

kernel-default-devel-debuginfo-5.3.18-lp152.33.1

kernel-kvmsmall-5.3.18-lp152.33.1

kernel-kvmsmall-debuginfo-5.3.18-lp152.33.1

kernel-kvmsmall-debugsource-5.3.18-lp152.33.1

kernel-kvmsmall-devel-5.3.18-lp152.33.1

kernel-kvmsmall-devel-debuginfo-5.3.18-lp152.33.1

kernel-obs-build-5.3.18-lp152.33.1

kernel-obs-build-debugsource-5.3.18-lp152.33.1

kernel-obs-qa-5.3.18-lp152.33.1

kernel-preempt-5.3.18-lp152.33.1

kernel-preempt-debuginfo-5.3.18-lp152.33.1

kernel-preempt-debugsource-5.3.18-lp152.33.1

kernel-preempt-devel-5.3.18-...

Read the Full Advisory

References

https://www.suse.com/security/cve/CVE-2020-12771.html

https://www.suse.com/security/cve/CVE-2020-15393.html

https://bugzilla.suse.com/1152472

https://bugzilla.suse.com/1152489

https://bugzilla.suse.com/1153274

https://bugzilla.suse.com/1154353

https://bugzilla.suse.com/1155518

https://bugzilla.suse.com/1155798

https://bugzilla.suse.com/1156395

https://bugzilla.suse.com/1158983

https://bugzilla.suse.com/1162702

https://bugzilla.suse.com/1167773

https://bugzilla.suse.com/1169094

https://bugzilla.suse.com/1170284

https://bugzilla.suse.com/1170617

https://bugzilla.suse.com/1171150

https://bugzilla.suse.com/1171529

https://bugzilla.suse.com/1171530

https://bugzilla.suse.com/1171732

https://bugzilla.suse.com/1172344

https://bugzilla.suse.com/1172543

https://bugzilla.suse.com/1172687

https://bugzilla.suse.com/1172871

https://bugzilla.suse.com/1173284

https://bugzilla.suse.com/1173514

https://bugzilla.suse.com/1173552

https://bugzilla.suse.com/1173573

https://bugzilla.suse.com/1173625

https://bugzilla.suse.com/1173746

htt...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2020:1062-1
Rating: important
Affected Products: openSUSE Leap 15.2 le.

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here