The SUSE Linux Enterprise 12 SP5 kernel was updated to receive various security and bugfixes. The following security bugs were fixed: - CVE-2020-14331: A buffer over write in vgacon_scroll was fixed (bnc#1174205). - CVE-2020-10135: Legacy pairing and secure-connections pairing authentication in Bluetooth BR/EDR Core Specification v5.2 and earlier may have allowed an unauthenticated user to complete authentication without pairing credentials via adjacent access. An unauthenticated, adjacent attacker could impersonate a Bluetooth BR/EDR master or slave to pair with a previously paired remote device to successfully complete the authentication procedure without knowing the link key (bnc#1171988). - CVE-2020-0305: In cdev_get of char_dev.c, there is a possible
#1051510 #1065729 #1104967 #1111666 #1112178
#1113956 #1114279 #1150660 #1151927 #1152107
#1152624 #1158983 #1159058 #1162002 #1163309
#1167104 #1168959 #1169514 #1169771 #1169795
#1170011 #1170442 #1170617 #1170618 #1171124
#1171424 #1171529 #1171530 #1171558 #1171673
#1171732 #1171739 #1171743 #1171753 #1171759
#1171761 #1171835 #1171841 #1171868 #1171988
#1172247 #1172257 #1172344 #1172484 #1172687
#1172719 #1172871 #1172872 #1172999 #1173060
#1173074 #1173146 #1173265 #1173280 #1173284
#1173428 #1173462 #1173514 #1173567 #1173573
#1173746 #1173818 #1173820 #1173825 #1173826
#1173833 #1173838 #1173839 #1173845 #1173857
#1174113 #1174115 #1174122 #1174123 #1174130
#1174205 #117...
Read the Full Advisory
Get the latest Linux and open source security news straight to your inbox.