The SUSE Linux Enterprise 12-SP5 kernel-RT was updated to 4.12.14 to receive various security and bugfixes. The following security bugs were fixed: - CVE-2020-8992: Fixed an issue in ext4_protect_reserved_inode in fs/ext4/block_validity.c that allowed attackers to cause a soft lockup via a crafted journal size (bsc#1164069). - CVE-2020-8648: Fixed a use-after-free vulnerability in the n_tty_receive_buf_common function in drivers/tty/n_tty.c (bsc#1162928). - CVE-2020-2732: Fixed an issue affecting Intel CPUs where an L2 guest may trick the L0 hypervisor into accessing sensitive L1 resources (bsc#1163971). - CVE-2019-16746: There was an issue in net/wireless/nl80211.c where the kernel did not check the length of variable elements in a beacon head, leading to a buffer overflow (bsc#1152107).
#1050549 #1051510 #1061840 #1065600 #1065729
#1071995 #1085030 #1088810 #1105392 #1111666
#1112178 #1112504 #1114279 #1114648 #1118338
#1127682 #1129551 #1133021 #1133147 #1140025
#1142685 #1144162 #1152107 #1153535 #1154243
#1156609 #1157042 #1157158 #1157424 #1157480
#1157966 #1158013 #1159271 #1159955 #1160218
#1160979 #1161360 #1161552 #1161702 #1161907
#1161931 #1161933 #1161934 #1161935 #1161936
#1161937 #1162067 #1162109 #1162139 #1162171
#1162557 #1162617 #1162618 #1162619 #1162623
#1162928 #1162943 #1163206 #1163383 #1163384
#1163762 #1163774 #1163836 #1163840 #1163841
#1163842 #1163843 #1163844 #1163845 #1163846
#1163849 #1163850 #1163851 #1163852 #1163853
#1163855 #116...
Read the Full Advisory
Get the latest Linux and open source security news straight to your inbox.