The SUSE Linux Enterprise 15 SP2 kernel was updated to receive various security and bugfixes. The following security bugs were fixed: - CVE-2020-26088: Fixed an improper CAP_NET_RAW check in NFC socket creation could have been used by local attackers to create raw sockets, bypassing security mechanisms (bsc#1176990). - CVE-2020-14390: Fixed an out-of-bounds memory write leading to memory corruption or a denial of service when changing screen size (bnc#1176235). - CVE-2020-0432: Fixed an out of bounds write due to an integer overflow (bsc#1176721). - CVE-2020-0427: Fixed an out of bounds read due to a use after free (bsc#1176725). - CVE-2020-0431: Fixed an out of bounds write due to a missing bounds check (bsc#1176722). - CVE-2020-0404: Fixed a linked list corruption due to an unusual root cause (bsc#1176423).
#1055186 #1058115 #1065600 #1065729 #1094244
#1136666 #1152148 #1152472 #1152489 #1153274
#1154353 #1155518 #1155798 #1156395 #1167527
#1170232 #1170774 #1171000 #1171068 #1171073
#1171558 #1171688 #1171742 #1172419 #1172757
#1172873 #1173017 #1173060 #1173115 #1173267
#1173746 #1174029 #1174110 #1174111 #1174358
#1174484 #1174486 #1174899 #1175263 #1175667
#1175718 #1175749 #1175787 #1175882 #1175952
#1175996 #1175997 #1175998 #1175999 #1176000
#1176001 #1176019 #1176022 #1176038 #1176063
#1176137 #1176235 #1176236 #1176237 #1176242
#1176278 #1176357 #1176358 #1176359 #1176360
#1176361 #1176362 #1176363 #1176364 #1176365
#1176366 #1176367 #1176381 #1176423 #1176449
#1176482 #117...
Read the Full Advisory
Get the latest Linux and open source security news straight to your inbox.