-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
==================================================================== Red Hat Security Advisory
Synopsis: Important: kernel-rt security and bug fix update
Advisory ID: RHSA-2020:0609-01
Product: Red Hat Enterprise MRG for RHEL-6
Advisory URL: https://access.redhat.com/errata/RHSA-2020:0609
Issue date: 2020-02-26
CVE Names: CVE-2018-20976 CVE-2019-11085 CVE-2019-14895
CVE-2019-17133
====================================================================
1. Summary:
An update for kernel-rt is now available for Red Hat Enterprise MRG 2.
Red Hat Product Security has rated this update as having a security impact
of Important. A Common Vulnerability Scoring System (CVSS) base score,
which gives a detailed severity rating, is available for each vulnerability
from the CVE link(s) in the References section.
2. Relevant releases/architectures:
Red Hat MRG Realtime for RHEL 6 Server v.2 - noarch, x86_64
3. Description:
The kernel-rt packages provide the Real Time Linux Kernel, which enables
fine-tuning for systems with extremely high determinism requirements.
Security Fix(es):
* kernel: use-after-free in fs/xfs/xfs_super.c (CVE-2018-20976)
* kernel: insufficient input validation in kernel mode driver in Intel i915
graphics leads to privilege escalation (CVE-2019-11085)
* kernel: heap-based buffer overflow in mwifiex_process_country_ie()
function in drivers/net/wireless/marvell/mwifiex/sta_ioctl.c
(CVE-2019-14895)
* kernel: buffer overflow in cfg80211_mgd_wext_giwessid in
net/wireless/wext-sme.c (CVE-2019-17133)
For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE
page(s) listed in the References section.
Bug Fix(es):
* update the MRG 2.5.z 3.10 realtime-kernel sources (BZ#1794133)
4. Solution:
For details on how to apply this update, which includes the changes
described in this advisory, refer to:
https://access.redhat.com/articles/11258
The system must be rebooted for this update to take effect.
5. Bugs fixed (https://bugzilla.redhat.com/):
1710405 - CVE-2019-11085 kernel: insufficient input validation in kernel mode driver in Intel i915 graphics leads to privilege escalation
1743547 - CVE-2018-20976 kernel: use-after-free in fs/xfs/xfs_super.c
1771909 - CVE-2019-17133 kernel: buffer overflow in cfg80211_mgd_wext_giwessid in net/wireless/wext-sme.c
1774870 - CVE-2019-14895 kernel: heap-based buffer overflow in mwifiex_process_country_ie() function in drivers/net/wireless/marvell/mwifiex/sta_ioctl.c
6. Package List:
Red Hat MRG Realtime for RHEL 6 Server v.2:
Source:
kernel-rt-3.10.0-693.64.1.rt56.662.el6rt.src.rpm
noarch:
kernel-rt-doc-3.10.0-693.64.1.rt56.662.el6rt.noarch.rpm
kernel-rt-firmware-3.10.0-693.64.1.rt56.662.el6rt.noarch.rpm
x86_64:
kernel-rt-3.10.0-693.64.1.rt56.662.el6rt.x86_64.rpm
kernel-rt-debug-3.10.0-693.64.1.rt56.662.el6rt.x86_64.rpm
kernel-rt-debug-debuginfo-3.10.0-693.64.1.rt56.662.el6rt.x86_64.rpm
kernel-rt-debug-devel-3.10.0-693.64.1.rt56.662.el6rt.x86_64.rpm
kernel-rt-debuginfo-3.10.0-693.64.1.rt56.662.el6rt.x86_64.rpm
kernel-rt-debuginfo-common-x86_64-3.10.0-693.64.1.rt56.662.el6rt.x86_64.rpm
kernel-rt-devel-3.10.0-693.64.1.rt56.662.el6rt.x86_64.rpm
kernel-rt-trace-3.10.0-693.64.1.rt56.662.el6rt.x86_64.rpm
kernel-rt-trace-debuginfo-3.10.0-693.64.1.rt56.662.el6rt.x86_64.rpm
kernel-rt-trace-devel-3.10.0-693.64.1.rt56.662.el6rt.x86_64.rpm
kernel-rt-vanilla-3.10.0-693.64.1.rt56.662.el6rt.x86_64.rpm
kernel-rt-vanilla-debuginfo-3.10.0-693.64.1.rt56.662.el6rt.x86_64.rpm
kernel-rt-vanilla-devel-3.10.0-693.64.1.rt56.662.el6rt.x86_64.rpm
These packages are GPG signed by Red Hat for security. Our key and
details on how to verify the signature are available from
https://access.redhat.com/security/team/key/
7. References:
https://access.redhat.com/security/cve/CVE-2018-20976
https://access.redhat.com/security/cve/CVE-2019-11085
https://access.redhat.com/security/cve/CVE-2019-14895
https://access.redhat.com/security/cve/CVE-2019-17133
https://access.redhat.com/security/updates/classification/#important
8. Contact:
The Red Hat security contact is . More contact
details at https://access.redhat.com/security/team/contact/
Copyright 2020 Red Hat, Inc.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1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/gTk
-----END PGP SIGNATURE-----
--
RHSA-announce mailing list
This email address is being protected from spambots. You need JavaScript enabled to view it.
For details on how to apply this update, which includes the changes
described in this advisory, refer to:
https://access.redhat.com/articles/11258
The system must be rebooted for this update to take effect.
The kernel-rt packages provide the Real Time Linux Kernel, which enables
fine-tuning for systems with extremely high determinism requirements.
Security Fix(es):
* kernel: use-after-free in fs/xfs/xfs_super.c (CVE-2018-20976)
* kernel: insufficient input validation in kernel mode driver in Intel i915
graphics leads to privilege escalation (CVE-2019-11085)
* kernel: heap-based buffer overflow in mwifiex_process_country_ie()
function in drivers/net/wireless/marvell/mwifiex/sta_ioctl.c
(CVE-2019-14895)
* kernel: buffer overflow in cfg80211_mgd_wext_giwessid in
net/wireless/wext-sme.c (CVE-2019-17133)
For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE
page(s) listed in the References section.
Bug Fix(es):
* update the MRG 2.5.z 3.10 realtime-kernel sources (BZ#1794133)
https://access.redhat.com/security/cve/CVE-2018-20976 https://access.redhat.com/security/cve/CVE-2019-11085 https://access.redhat.com/security/cve/CVE-2019-14895 https://access.redhat.com/security/cve/CVE-2019-17133 https://access.redhat.com/security/updates/classification/#important
Red Hat MRG Realtime for RHEL 6 Server v.2:
Source:
kernel-rt-3.10.0-693.64.1.rt56.662.el6rt.src.rpm
noarch:
kernel-rt-doc-3.10.0-693.64.1.rt56.662.el6rt.noarch.rpm
kernel-rt-firmware-3.10.0-693.64.1.rt56.662.el6rt.noarch.rpm
x86_64:
kernel-rt-3.10.0-693.64.1.rt56.662.el6rt.x86_64.rpm
kernel-rt-debug-3.10.0-693.64.1.rt56.662.el6rt.x86_64.rpm
kernel-rt-debug-debuginfo-3.10.0-693.64.1.rt56.662.el6rt.x86_64.rpm
kernel-rt-debug-devel-3.10.0-693.64.1.rt56.662.el6rt.x86_64.rpm
kernel-rt-debuginfo-3.10.0-693.64.1.rt56.662.el6rt.x86_64.rpm
kernel-rt-debuginfo-common-x86_64-3.10.0-693.64.1.rt56.662.el6rt.x86_64.rpm
kernel-rt-devel-3.10.0-693.64.1.rt56.662.el6rt.x86_64.rpm
kernel-rt-trace-3.10.0-693.64.1.rt56.662.el6rt.x86_64.rpm
kernel-rt-trace-debuginfo-3.10.0-693.64.1.rt56.662.el6rt.x86_64.rpm
kernel-rt-trace-devel-3.10.0-693.64.1.rt56.662.el6rt.x86_64.rpm
kernel-rt-vanilla-3.10.0-693.64.1.rt56.662.el6rt.x86_64.rpm
kernel-rt-vanilla-debuginfo-3.10.0-693.64.1.rt56.662.el6rt.x86_64.rpm
kernel-rt-vanilla-devel-3.10.0-693.64.1.rt56.662.el6rt.x86_64.rpm
These packages are GPG signed by Red Hat for security. Our key and
details on how to verify the signature are available from
https://access.redhat.com/security/team/key/
An update for kernel-rt is now available for Red Hat Enterprise MRG 2.Red Hat Product Security has rated this update as having a security impactof Important. A Common Vulnerability Scoring System (CVSS) base score,which gives a detailed severity rating, is available for each vulnerabilityfrom the CVE link(s) in the References section.
Red Hat MRG Realtime for RHEL 6 Server v.2 - noarch, x86_64
1710405 - CVE-2019-11085 kernel: insufficient input validation in kernel mode driver in Intel i915 graphics leads to privilege escalation
1743547 - CVE-2018-20976 kernel: use-after-free in fs/xfs/xfs_super.c
1771909 - CVE-2019-17133 kernel: buffer overflow in cfg80211_mgd_wext_giwessid in net/wireless/wext-sme.c
1774870 - CVE-2019-14895 kernel: heap-based buffer overflow in mwifiex_process_country_ie() function in drivers/net/wireless/marvell/mwifiex/sta_ioctl.c
Get the latest Linux and open source security news straight to your inbox.