Alerts This Week
Warning Icon 1 664
Alerts This Week
Warning Icon 1 664

SUSE: 2020:3491-1 Important: Security Fixes for Linux Kernel

suse
Calendar Grey November 23, 2020
Dist Suse Esm H88
SUSE has issued a security update addressing 14 vulnerabilities in the Linux kernel, marked as critical. A system reboot is advised post-installation.
An update that solves 14 vulnerabilities and has 90 fixes is now available

Summary

The SUSE Linux Enterprise 15 SP2 kernel Azure was updated to receive various security and bugfixes. The following security bugs were fixed: - CVE-2020-25656: Fixed a concurrency use-after-free in vt_do_kdgkb_ioctl (bnc#1177766). - CVE-2020-25285: Fixed a race condition between hugetlb sysctl handlers in mm/hugetlb.c (bnc#1176485). - CVE-2020-14351: Fixed a race in the perf_mmap_close() function (bsc#1177086). - CVE-2020-16120: Fixed a permissions issue in ovl_path_open() (bsc#1177470). - CVE-2020-12351: Implemented a kABI workaround for bluetooth l2cap_ops filter addition (bsc#1177724). - CVE-2020-12352: Fixed an information leak when processing certain AMP packets aka "BleedingTooth" (bsc#1177725). - CVE-2020-25212: Fixed a TOCTOU mismatch in the NFS client code (bnc#1176381).

References

#1055014 #1055186 #1061843 #1065600 #1065729

#1066382 #1077428 #1129923 #1134760 #1149032

#1152489 #1155798 #1163592 #1164648 #1165692

#1168468 #1171675 #1171688 #1174003 #1174098

#1174748 #1174969 #1175052 #1175599 #1175621

#1175718 #1175721 #1175749 #1175807 #1175898

#1176019 #1176354 #1176381 #1176400 #1176485

#1176588 #1176713 #1176907 #1176979 #1177027

#1177086 #1177090 #1177109 #1177121 #1177193

#1177194 #1177206 #1177258 #1177271 #1177281

#1177283 #1177284 #1177285 #1177286 #1177297

#1177353 #1177384 #1177410 #1177411 #1177470

#1177511 #1177617 #1177681 #1177683 #1177687

#1177694 #1177697 #1177719 #1177724 #1177725

#1177726 #1177739 #1177749 #1177750 #1177754

#1177755 #117...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2020:3491-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here