The SUSE Linux Enterprise 15 SP2 Azure kernel was updated to receive various security and bugfixes. The following security bugs were fixed: - CVE-2020-26088: Fixed an improper CAP_NET_RAW check in NFC socket creation could have been used by local attackers to create raw sockets, bypassing security mechanisms (bsc#1176990). - CVE-2020-14390: Fixed an out-of-bounds memory write leading to memory corruption or a denial of service when changing screen size (bnc#1176235). - CVE-2020-0432: Fixed an out of bounds write due to an integer overflow (bsc#1176721). - CVE-2020-0427: Fixed an out of bounds read due to a use after free (bsc#1176725). - CVE-2020-0431: Fixed an out of bounds write due to a missing bounds check (bsc#1176722). - CVE-2020-0404: Fixed a linked list corruption due to an unusual root cause (bsc#1176423).
#1055186 #1058115 #1065600 #1065729 #1094244
#1152472 #1152489 #1153274 #1154353 #1155518
#1156395 #1167527 #1170774 #1171068 #1171688
#1171742 #1172757 #1173017 #1173115 #1173746
#1174358 #1174899 #1175749 #1175882 #1176019
#1176038 #1176137 #1176235 #1176236 #1176237
#1176242 #1176278 #1176357 #1176358 #1176359
#1176360 #1176361 #1176362 #1176363 #1176364
#1176365 #1176366 #1176367 #1176381 #1176423
#1176449 #1176482 #1176486 #1176507 #1176536
#1176537 #1176538 #1176539 #1176540 #1176541
#1176542 #1176544 #1176545 #1176546 #1176548
#1176558 #1176559 #1176587 #1176659 #1176698
#1176699 #1176700 #1176721 #1176722 #1176725
#1176732 #1176763 #1176775 #1176788 #1176789
#1176833 #117...
Read the Full Advisory
Get the latest Linux and open source security news straight to your inbox.