Alerts This Week
Warning Icon 1 666
Alerts This Week
Warning Icon 1 666

SUSE Linux Kernel 12 SP2 Security Advisory: Important Updates Provided

suse
Calendar Grey August 5, 2020
Dist Suse Esm H88
SUSE has released a critical security update for the Linux Kernel, addressing 14 vulnerabilities, which comprise significant multipoint and denial of service weaknesses.
An update that solves 14 vulnerabilities and has four fixes is now available

Summary

The SUSE Linux Enterprise 12 SP2 kernel was updated to receive various security and bugfixes. The following security bugs were fixed: - CVE-2020-10135: Legacy pairing and secure-connections pairing authentication in Bluetooth may have allowed an unauthenticated user to complete authentication without pairing credentials via adjacent access. An unauthenticated, adjacent attacker could impersonate a Bluetooth BR/EDR master or slave to pair with a previously paired remote device to successfully complete the authentication procedure without knowing the link key (bnc#1171988). - CVE-2020-10711: A NULL pointer dereference flaw was found in the SELinux subsystem. This flaw occurs while importing the Commercial IP Security Option (CIPSO) protocol's category bitmap into the SELinux extensible

References

#1162002 #1170383 #1171189 #1171191 #1171220

#1171732 #1171988 #1172049 #1172453 #1172458

#1172775 #1172781 #1172782 #1172783 #1172999

#1174115 #1174462 #1174543

Cross- CVE-2019-20810 CVE-2019-20812 CVE-2020-0305

CVE-2020-10135 CVE-2020-10711 CVE-2020-10732

CVE-2020-10751 CVE-2020-10766 CVE-2020-10767

CVE-2020-10768 CVE-2020-10773 CVE-2020-12771

CVE-2020-13974 CVE-2020-14416

Affected Products:

SUSE OpenStack Cloud 7

SUSE Linux Enterprise Server for SAP 12-SP2

SUSE Linux Enterprise Server 12-SP2-LTSS

SUSE Linux Enterprise Server 12-SP2-BCL

SUSE Linux Enterprise High Availability 12-SP2

https://www.suse.com/security/cve/CVE-2019-20810.html

https://www.suse.com/security/cve/CVE-2019-20812.html

https://www.suse.com/security/cve/CVE-2020-0305.html

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2020:2134-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here