Alerts This Week
Warning Icon 1 677
Alerts This Week
Warning Icon 1 677

SUSE: 2020:2122-1 Important: Linux Kernel Security Flaws Fixed

suse
Calendar Grey August 4, 2020
Dist Suse Esm H88
Critical fixes for SUSE Linux kernel to enhance security and stability with this important update.
An update that solves 13 vulnerabilities and has 70 fixes is now available

Summary

The SUSE Linux Enterprise 12 SP5 kernel was updated to receive various security and bugfixes. The following security bugs were fixed: - CVE-2020-14331: A buffer over write in vgacon_scroll was fixed (bnc#1174205). - CVE-2020-10135: Legacy pairing and secure-connections pairing authentication in Bluetooth BR/EDR Core Specification v5.2 and earlier may have allowed an unauthenticated user to complete authentication without pairing credentials via adjacent access. An unauthenticated, adjacent attacker could impersonate a Bluetooth BR/EDR master or slave to pair with a previously paired remote device to successfully complete the authentication procedure without knowing the link key (bnc#1171988). - CVE-2020-0305: In cdev_get of char_dev.c, there is a possible

References

#1051510 #1065729 #1104967 #1111666 #1112178

#1113956 #1114279 #1150660 #1151927 #1152107

#1152624 #1158983 #1159058 #1162002 #1163309

#1167104 #1168959 #1169514 #1169771 #1169795

#1170011 #1170442 #1170617 #1170618 #1171124

#1171424 #1171529 #1171530 #1171558 #1171673

#1171732 #1171739 #1171743 #1171753 #1171759

#1171761 #1171835 #1171841 #1171868 #1171988

#1172247 #1172257 #1172344 #1172484 #1172687

#1172719 #1172871 #1172872 #1172999 #1173060

#1173074 #1173146 #1173265 #1173280 #1173284

#1173428 #1173462 #1173514 #1173567 #1173573

#1173746 #1173818 #1173820 #1173825 #1173826

#1173833 #1173838 #1173839 #1173845 #1173857

#1174113 #1174115 #1174122 #1174123 #1174130

#1174205 #117...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2020:2122-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here