Alerts This Week
Warning Icon 1 697
Alerts This Week
Warning Icon 1 697

SUSE: 2020:3273-1 Important: Linux Kernel Update for Security Issues

suse
Calendar Grey November 10, 2020
Dist Suse Esm H88
The newest SUSE kernel update tackles two major vulnerabilities and fixes 25 other issues. Regularly applying security updates is crucial for system strength
An update that solves two vulnerabilities and has 25 fixes is now available

Summary

The SUSE Linux Enterprise 15 SP2 kernel was updated to receive various security and bug fixes. The following security bugs were fixed: - CVE-2020-25656: Fixed a concurrency use-after-free in vt_do_kdgkb_ioctl (bnc#1177766). - CVE-2020-8694: Restricted energy meter to root access (bsc#1170415). The following non-security bugs were fixed: - act_ife: load meta modules before tcf_idr_check_alloc() (networking-stable-20_09_24). - ath10k: check idx validity in __ath10k_htt_rx_ring_fill_n() (git-fixes). - ath9k: hif_usb: fix race condition between usb_get_urb() and usb_kill_anchored_urbs() (git-fixes). - block: Set same_page to false in __bio_try_merge_page if ret is false (git-fixes). - Bluetooth: btusb: Fix memleak in btusb_mtk_submit_wmt_recv_urb (git-fixes).

References

#1065600 #1066382 #1149032 #1163592 #1164648

#1170415 #1175749 #1176354 #1177281 #1177766

#1177799 #1177801 #1178166 #1178173 #1178175

#1178176 #1178177 #1178183 #1178184 #1178185

#1178186 #1178190 #1178191 #1178255 #1178307

#1178330 #1178395

Cross- CVE-2020-25656 CVE-2020-8694

Affected Products:

SUSE Linux Enterprise Workstation Extension 15-SP2

SUSE Linux Enterprise Module for Live Patching 15-SP2

SUSE Linux Enterprise Module for Legacy Software 15-SP2

SUSE Linux Enterprise Module for Development Tools 15-SP2

SUSE Linux Enterprise Module for Basesystem 15-SP2

SUSE Linux Enterprise High Availability 15-SP2

https://www.suse.com/security/cve/CVE-2020-25656.html

https://www.suse.com/security/cve/CVE-2020-8694.html

https://bugzilla.suse.com/1065600

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2020:3273-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here