Alerts This Week
Warning Icon 1 664
Alerts This Week
Warning Icon 1 664

openSUSE Leap 15.1: 1325-1 Important: Linux Kernel Security Fixes

opensuse
Calendar Grey September 2, 2020
Dist Opensuse Esm H88
openSUSE promotes major updates to the Linux Kernel addressing security vulnerabilities and bug repairs. A system reboot is advised after the update for full effect.
An update that solves 6 vulnerabilities and has 107 fixes is now available.

Description

The openSUSE Leap 15.1 kernel was updated to receive various security and

bugfixes.

The following security bugs were fixed:

- CVE-2018-3639: Systems with microprocessors utilizing speculative

execution and speculative execution of memory reads before the addresses

of all prior memory writes are known may have allowed unauthorized

disclosure of information to an attacker with local user access via a

side-channel analysis, aka Speculative Store Bypass (SSB), Variant 4

(bnc#1085308 bnc#1087082 bnc#1172782 bnc#1172783). Mitigations for Arm

had not been included yet.

- CVE-2020-14314: Fixed potential negative array index in do_split()

(bsc#1173798).

- CVE-2020-14331: Fixed a buffer over write in vgacon_scroll (bnc#1174205).

- CVE-2020-14356: A flaw null pointer dereference in the Linux kernel

cgroupv2 subsystem in versions was found in the way when reboot the

system. A local user could use this flaw to crash the system...

Read the Full Advisory

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Leap 15.1:

zypper in -t patch openSUSE-2020-1325=1

Package List

- openSUSE Leap 15.1 (x86_64):

kernel-debug-4.12.14-lp151.28.63.1

kernel-debug-base-4.12.14-lp151.28.63.1

kernel-debug-base-debuginfo-4.12.14-lp151.28.63.1

kernel-debug-debuginfo-4.12.14-lp151.28.63.1

kernel-debug-debugsource-4.12.14-lp151.28.63.1

kernel-debug-devel-4.12.14-lp151.28.63.1

kernel-debug-devel-debuginfo-4.12.14-lp151.28.63.1

kernel-default-4.12.14-lp151.28.63.1

kernel-default-base-4.12.14-lp151.28.63.1

kernel-default-base-debuginfo-4.12.14-lp151.28.63.1

kernel-default-debuginfo-4.12.14-lp151.28.63.1

kernel-default-debugsource-4.12.14-lp151.28.63.1

kernel-default-devel-4.12.14-lp151.28.63.1

kernel-default-devel-debuginfo-4.12.14-lp151.28.63.1

kernel-kvmsmall-4.12.14-lp151.28.63.1

kernel-kvmsmall-base-4.12.14-lp151.28.63.1

kernel-kvmsmall-base-debuginfo-4.12.14-lp151.28.63.1

kernel-kvmsmall-debuginfo-4.12.14-lp151.28.63.1

kernel-kvmsmall-debugsource-4.12.14-lp151.28.63.1

kernel-kvmsmall-devel-4.12.14-lp151.28.63.1

kernel-kvmsmall-devel-debuginfo-4.12.14-lp151.28.63.1

kernel-obs-build-4.12.14-lp15...

Read the Full Advisory

References

https://www.suse.com/security/cve/CVE-2018-3639.html

https://www.suse.com/security/cve/CVE-2020-14314.html

https://www.suse.com/security/cve/CVE-2020-14331.html

https://www.suse.com/security/cve/CVE-2020-14356.html

https://www.suse.com/security/cve/CVE-2020-1749.html

https://www.suse.com/security/cve/CVE-2020-24394.html

https://bugzilla.suse.com/1065600

https://bugzilla.suse.com/1065729

https://bugzilla.suse.com/1071995

https://bugzilla.suse.com/1083548

https://bugzilla.suse.com/1085030

https://bugzilla.suse.com/1085308

https://bugzilla.suse.com/1087082

https://bugzilla.suse.com/1111666

https://bugzilla.suse.com/1112178

https://bugzilla.suse.com/1113956

https://bugzilla.suse.com/1133021

https://bugzilla.suse.com/1144333

https://bugzilla.suse.com/1152148

https://bugzilla.suse.com/1163524

https://bugzilla.suse.com/1165629

https://bugzilla.suse.com/1166965

https://bugzilla.suse.com/1169790

https://bugzilla.suse.com/1170232

https://bugzilla.suse.com/1171688

https://bugzilla.suse.com/1172073

https://bugzilla.suse.co...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2020:1325-1
Rating: important
Affected Products: openSUSE Leap 15.1 le.

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here