Alerts This Week
Warning Icon 1 697
Alerts This Week
Warning Icon 1 697

SUSE Linux 12-SP5: 2020:0667-1 Important: Kernel Security Fixes

suse
Calendar Grey March 13, 2020
Dist Suse Esm H88
Debian OS Kernel patch rectifies multiple significant vulnerabilities, delivering essential corrections. System restart advised.
An update that solves 6 vulnerabilities and has 102 fixes is now available

Summary

The SUSE Linux Enterprise 12-SP5 kernel-RT was updated to 4.12.14 to receive various security and bugfixes. The following security bugs were fixed: - CVE-2020-8992: Fixed an issue in ext4_protect_reserved_inode in fs/ext4/block_validity.c that allowed attackers to cause a soft lockup via a crafted journal size (bsc#1164069). - CVE-2020-8648: Fixed a use-after-free vulnerability in the n_tty_receive_buf_common function in drivers/tty/n_tty.c (bsc#1162928). - CVE-2020-2732: Fixed an issue affecting Intel CPUs where an L2 guest may trick the L0 hypervisor into accessing sensitive L1 resources (bsc#1163971). - CVE-2019-16746: There was an issue in net/wireless/nl80211.c where the kernel did not check the length of variable elements in a beacon head, leading to a buffer overflow (bsc#1152107).

References

#1050549 #1051510 #1061840 #1065600 #1065729

#1071995 #1085030 #1088810 #1105392 #1111666

#1112178 #1112504 #1114279 #1114648 #1118338

#1127682 #1129551 #1133021 #1133147 #1140025

#1142685 #1144162 #1152107 #1153535 #1154243

#1156609 #1157042 #1157158 #1157424 #1157480

#1157966 #1158013 #1159271 #1159955 #1160218

#1160979 #1161360 #1161552 #1161702 #1161907

#1161931 #1161933 #1161934 #1161935 #1161936

#1161937 #1162067 #1162109 #1162139 #1162171

#1162557 #1162617 #1162618 #1162619 #1162623

#1162928 #1162943 #1163206 #1163383 #1163384

#1163762 #1163774 #1163836 #1163840 #1163841

#1163842 #1163843 #1163844 #1163845 #1163846

#1163849 #1163850 #1163851 #1163852 #1163853

#1163855 #116...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2020:0667-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here