The openSUSE Leap 15.1 kernel was updated to receive various security and
bugfixes.
The following security bugs were fixed:
- CVE-2018-3639: Systems with microprocessors utilizing speculative
execution and speculative execution of memory reads before the addresses
of all prior memory writes are known may have allowed unauthorized
disclosure of information to an attacker with local user access via a
side-channel analysis, aka Speculative Store Bypass (SSB), Variant 4
(bnc#1085308 bnc#1087082 bnc#1172782 bnc#1172783). Mitigations for Arm
had not been included yet.
- CVE-2020-14314: Fixed potential negative array index in do_split()
(bsc#1173798).
- CVE-2020-14331: Fixed a buffer over write in vgacon_scroll (bnc#1174205).
- CVE-2020-14356: A flaw null pointer dereference in the Linux kernel
cgroupv2 subsystem in versions was found in the way when reboot the
system. A local user could use this flaw to crash the system...
Read the Full AdvisoryPatch Instructions:
To install this openSUSE Security Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.1:
zypper in -t patch openSUSE-2020-1325=1
- openSUSE Leap 15.1 (x86_64):
kernel-debug-4.12.14-lp151.28.63.1
kernel-debug-base-4.12.14-lp151.28.63.1
kernel-debug-base-debuginfo-4.12.14-lp151.28.63.1
kernel-debug-debuginfo-4.12.14-lp151.28.63.1
kernel-debug-debugsource-4.12.14-lp151.28.63.1
kernel-debug-devel-4.12.14-lp151.28.63.1
kernel-debug-devel-debuginfo-4.12.14-lp151.28.63.1
kernel-default-4.12.14-lp151.28.63.1
kernel-default-base-4.12.14-lp151.28.63.1
kernel-default-base-debuginfo-4.12.14-lp151.28.63.1
kernel-default-debuginfo-4.12.14-lp151.28.63.1
kernel-default-debugsource-4.12.14-lp151.28.63.1
kernel-default-devel-4.12.14-lp151.28.63.1
kernel-default-devel-debuginfo-4.12.14-lp151.28.63.1
kernel-kvmsmall-4.12.14-lp151.28.63.1
kernel-kvmsmall-base-4.12.14-lp151.28.63.1
kernel-kvmsmall-base-debuginfo-4.12.14-lp151.28.63.1
kernel-kvmsmall-debuginfo-4.12.14-lp151.28.63.1
kernel-kvmsmall-debugsource-4.12.14-lp151.28.63.1
kernel-kvmsmall-devel-4.12.14-lp151.28.63.1
kernel-kvmsmall-devel-debuginfo-4.12.14-lp151.28.63.1
kernel-obs-build-4.12.14-lp15...
Read the Full Advisoryhttps://www.suse.com/security/cve/CVE-2018-3639.html
https://www.suse.com/security/cve/CVE-2020-14314.html
https://www.suse.com/security/cve/CVE-2020-14331.html
https://www.suse.com/security/cve/CVE-2020-14356.html
https://www.suse.com/security/cve/CVE-2020-1749.html
https://www.suse.com/security/cve/CVE-2020-24394.html
https://bugzilla.suse.com/1065600
https://bugzilla.suse.com/1065729
https://bugzilla.suse.com/1071995
https://bugzilla.suse.com/1083548
https://bugzilla.suse.com/1085030
https://bugzilla.suse.com/1085308
https://bugzilla.suse.com/1087082
https://bugzilla.suse.com/1111666
https://bugzilla.suse.com/1112178
https://bugzilla.suse.com/1113956
https://bugzilla.suse.com/1133021
https://bugzilla.suse.com/1144333
https://bugzilla.suse.com/1152148
https://bugzilla.suse.com/1163524
https://bugzilla.suse.com/1165629
https://bugzilla.suse.com/1166965
https://bugzilla.suse.com/1169790
https://bugzilla.suse.com/1170232
https://bugzilla.suse.com/1171688
https://bugzilla.suse.com/1172073
https://bugzilla.suse.co...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.