Revision Date: | 2020-12-01 | Version: | 1 |
Title: | Security update for the Linux Kernel (Live Patch 34 for SLE 12 SP2) (Important) |
Description: |
This update for the Linux Kernel 4.4.121-92_129 fixes several issues.
The following security issues were fixed:
- CVE-2020-0429: In l2tp_session_delete and related functions of l2tp_core.c, there is possible memory corruption due to a use after free. This could lead to local escalation of privilege with system execution privileges needed. User interaction is not needed for exploitation. (bsc#1176724) - CVE-2020-14381: Fixed a use-after-free in the fast user mutex (futex) wait operation, which could have lead to memory corruption and possibly privilege escalation (bsc#1176011). - CVE-2020-0431: In kbd_keycode of keyboard.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. (bsc#1176722) - CVE-2020-25212: A TOCTOU mismatch in the NFS client code could be used by local attackers to corrupt memory or possibly have unspecified other impact because a size check is in fs/nfs/nfs4proc.c instead of fs/nfs/nfs4xdr.c (bsc#1176381). - CVE-2020-14386: Fixed a memory corruption which could have lead to an attacker gaining root privileges from unprivileged processes. The highest threat from this vulnerability is to data confidentiality and integrity (bsc#1176069).
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1008644 1077330 1092100 1094290 1094291 1120813 1121753 1126325 1127458 1131595 1131955 1141670 1156275 1159913 1160467 1160468 1163019 1163933 1164692 1165631 1168994 1169659 1170313 1170423 1172798 1172846 1173466 1173467 1173469 1173972 1174543 1174753 1174817 1174922 1174923 1175168 1175626 1175656 1176012 1176072 1176382 1176896 1176931 CVE-2015-9542 CVE-2016-9180 CVE-2018-0739 CVE-2018-1122 CVE-2018-1123 CVE-2018-1124 CVE-2018-1125 CVE-2018-1126 CVE-2019-12519 CVE-2019-12520 CVE-2019-12521 CVE-2019-12524 CVE-2019-14869 CVE-2019-14896 CVE-2019-14897 CVE-2019-3840 CVE-2019-3886 CVE-2019-5108 CVE-2020-0429 CVE-2020-0431 CVE-2020-10713 CVE-2020-11945 CVE-2020-12673 CVE-2020-12674 CVE-2020-13844 CVE-2020-14381 CVE-2020-14386 CVE-2020-15304 CVE-2020-15305 CVE-2020-15306 CVE-2020-1749 CVE-2020-1938 CVE-2020-25212 CVE-2020-8608 SUSE-SU-2020:1117-1 SUSE-SU-2020:1227-1 SUSE-SU-2020:2274-1 SUSE-SU-2020:3263-1
|
Platform(s): | openSUSE Leap 15.0 openSUSE Leap 42.3 SUSE Linux Enterprise Desktop 12 SUSE Linux Enterprise Desktop 12 SP1 SUSE Linux Enterprise Desktop 12 SP2 SUSE Linux Enterprise Desktop 12 SP3 SUSE Linux Enterprise Desktop 12 SP4 SUSE Linux Enterprise Module for additional PackageHub packages 15 SUSE Linux Enterprise Module for Basesystem 15 SUSE Linux Enterprise Module for Basesystem 15 SP1 SUSE Linux Enterprise Module for Desktop Applications 15 SUSE Linux Enterprise Module for Desktop Applications 15 SP1 SUSE Linux Enterprise Module for Legacy Software 15 SUSE Linux Enterprise Module for Live Patching 15 SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 SUSE Linux Enterprise Module for Public Cloud 15 SUSE Linux Enterprise Module for Public Cloud 15 SP1 SUSE Linux Enterprise Module for Server Applications 15 SUSE Linux Enterprise Module for Server Applications 15 SP1 SUSE Linux Enterprise Server 12 SP2 SUSE Linux Enterprise Server 12 SP2-BCL SUSE Linux Enterprise Server 12 SP2-ESPOS SUSE Linux Enterprise Server 12 SP2-LTSS SUSE Linux Enterprise Server 12 SP3 SUSE Linux Enterprise Server 12 SP3-BCL SUSE Linux Enterprise Server 12 SP3-ESPOS SUSE Linux Enterprise Server 12 SP3-LTSS SUSE Linux Enterprise Server 12 SP3-TERADATA SUSE Linux Enterprise Server 12 SP4 SUSE Linux Enterprise Server 12 SP4-LTSS SUSE Linux Enterprise Server 12 SP5 SUSE Linux Enterprise Server 15-LTSS SUSE Linux Enterprise Server for SAP Applications 12 SP2-ESPOS SUSE Linux Enterprise Server for SAP Applications 12 SP3-BCL SUSE Linux Enterprise Server for SAP Applications 12 SP3-ESPOS SUSE Linux Enterprise Server for SAP Applications 12 SP3-LTSS SUSE Linux Enterprise Server for SAP Applications 12 SP3-TERADATA SUSE Linux Enterprise Server for SAP Applications 12 SP4 SUSE Linux Enterprise Server for SAP Applications 12 SP4-LTSS SUSE Linux Enterprise Server for SAP Applications 12 SP5 SUSE Linux Enterprise Workstation Extension 12 SUSE Linux Enterprise Workstation Extension 12 SP1 SUSE Linux Enterprise Workstation Extension 12 SP2 SUSE Linux Enterprise Workstation Extension 12 SP3 SUSE Linux Enterprise Workstation Extension 12 SP4 SUSE Linux Enterprise Workstation Extension 15 SUSE Linux Enterprise Workstation Extension 15 SP1 SUSE OpenStack Cloud 7
| Product(s): | |
Definition Synopsis |
openSUSE Leap 15.0 is installed AND enscript-1.6.6-lp150.1 is installed
|
Definition Synopsis |
openSUSE Leap 42.3 is installed
AND Package Information
aaa_base-13.2+git20140911.61c1681-27 is installed
OR aaa_base-extras-13.2+git20140911.61c1681-27 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 is installed
AND Package Information
alsa-1.0.27.2-11 is installed
OR libasound2-1.0.27.2-11 is installed
OR libasound2-32bit-1.0.27.2-11 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP1 is installed
AND clamav-0.98.7-13 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP2 is installed
AND clamav-0.99.2-25 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP3 is installed
AND Package Information
curl-7.37.0-36 is installed
OR libcurl4-7.37.0-36 is installed
OR libcurl4-32bit-7.37.0-36 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP4 is installed
AND Package Information
bzip2-1.0.6-29 is installed
OR libbz2-1-1.0.6-29 is installed
OR libbz2-1-32bit-1.0.6-29 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for additional PackageHub packages 15 is installed
AND Package Information
samba-4.7.11+git.202.6edee83fb34-4.34 is installed
OR samba-python-4.7.11+git.202.6edee83fb34-4.34 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Basesystem 15 is installed
AND Package Information
dbus-1-glib-0.108-1 is installed
OR dbus-1-glib-32bit-0.108-1 is installed
OR dbus-1-glib-devel-0.108-1 is installed
OR dbus-1-glib-tool-0.108-1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
AND Package Information
librrd8-1.7.0-4 is installed
OR rrdtool-1.7.0-4 is installed
OR rrdtool-devel-1.7.0-4 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Desktop Applications 15 is installed
AND Package Information
libraptor-devel-2.0.15-1 is installed
OR libraptor2-0-2.0.15-1 is installed
OR raptor-2.0.15-1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Desktop Applications 15 SP1 is installed
AND Package Information
libIlmImf-2_2-23-2.2.1-3.6 is installed
OR libIlmImfUtil-2_2-23-2.2.1-3.6 is installed
OR openexr-2.2.1-3.6 is installed
OR openexr-devel-2.2.1-3.6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Legacy Software 15 is installed
AND osc-0.162.1-1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Live Patching 15 is installed
AND Package Information
kernel-livepatch-4_12_14-25_13-default-7-2 is installed
OR kernel-livepatch-SLE15_Update_3-7-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 is installed
AND Package Information
git-2.16.4-3.9 is installed
OR git-credential-gnome-keyring-2.16.4-3.9 is installed
OR git-credential-libsecret-2.16.4-3.9 is installed
OR git-p4-2.16.4-3.9 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 is installed
AND Package Information
libreoffice-6.2.5.2-8.5 is installed
OR libreoffice-gdb-pretty-printers-6.2.5.2-8.5 is installed
OR libreoffice-glade-6.2.5.2-8.5 is installed
OR libreoffice-gtk2-6.2.5.2-8.5 is installed
OR libreoffice-l10n-am-6.2.5.2-8.5 is installed
OR libreoffice-l10n-ast-6.2.5.2-8.5 is installed
OR libreoffice-l10n-be-6.2.5.2-8.5 is installed
OR libreoffice-l10n-bn_IN-6.2.5.2-8.5 is installed
OR libreoffice-l10n-bo-6.2.5.2-8.5 is installed
OR libreoffice-l10n-brx-6.2.5.2-8.5 is installed
OR libreoffice-l10n-bs-6.2.5.2-8.5 is installed
OR libreoffice-l10n-ca_valencia-6.2.5.2-8.5 is installed
OR libreoffice-l10n-dgo-6.2.5.2-8.5 is installed
OR libreoffice-l10n-en_GB-6.2.5.2-8.5 is installed
OR libreoffice-l10n-en_ZA-6.2.5.2-8.5 is installed
OR libreoffice-l10n-fy-6.2.5.2-8.5 is installed
OR libreoffice-l10n-gd-6.2.5.2-8.5 is installed
OR libreoffice-l10n-gug-6.2.5.2-8.5 is installed
OR libreoffice-l10n-hsb-6.2.5.2-8.5 is installed
OR libreoffice-l10n-id-6.2.5.2-8.5 is installed
OR libreoffice-l10n-is-6.2.5.2-8.5 is installed
OR libreoffice-l10n-ka-6.2.5.2-8.5 is installed
OR libreoffice-l10n-kab-6.2.5.2-8.5 is installed
OR libreoffice-l10n-km-6.2.5.2-8.5 is installed
OR libreoffice-l10n-kmr_Latn-6.2.5.2-8.5 is installed
OR libreoffice-l10n-kok-6.2.5.2-8.5 is installed
OR libreoffice-l10n-ks-6.2.5.2-8.5 is installed
OR libreoffice-l10n-lb-6.2.5.2-8.5 is installed
OR libreoffice-l10n-lo-6.2.5.2-8.5 is installed
OR libreoffice-l10n-mk-6.2.5.2-8.5 is installed
OR libreoffice-l10n-mn-6.2.5.2-8.5 is installed
OR libreoffice-l10n-mni-6.2.5.2-8.5 is installed
OR libreoffice-l10n-my-6.2.5.2-8.5 is installed
OR libreoffice-l10n-ne-6.2.5.2-8.5 is installed
OR libreoffice-l10n-oc-6.2.5.2-8.5 is installed
OR libreoffice-l10n-om-6.2.5.2-8.5 is installed
OR libreoffice-l10n-rw-6.2.5.2-8.5 is installed
OR libreoffice-l10n-sa_IN-6.2.5.2-8.5 is installed
OR libreoffice-l10n-sat-6.2.5.2-8.5 is installed
OR libreoffice-l10n-sd-6.2.5.2-8.5 is installed
OR libreoffice-l10n-sid-6.2.5.2-8.5 is installed
OR libreoffice-l10n-sq-6.2.5.2-8.5 is installed
OR libreoffice-l10n-sw_TZ-6.2.5.2-8.5 is installed
OR libreoffice-l10n-tg-6.2.5.2-8.5 is installed
OR libreoffice-l10n-tt-6.2.5.2-8.5 is installed
OR libreoffice-l10n-ug-6.2.5.2-8.5 is installed
OR libreoffice-l10n-uz-6.2.5.2-8.5 is installed
OR libreoffice-l10n-vec-6.2.5.2-8.5 is installed
OR libreoffice-l10n-vi-6.2.5.2-8.5 is installed
OR libreoffice-sdk-6.2.5.2-8.5 is installed
OR libreoffice-sdk-doc-6.2.5.2-8.5 is installed
OR libreofficekit-devel-6.2.5.2-8.5 is installed
OR libwps-0.4.10-7.3 is installed
OR libwps-0_4-4-0.4.10-7.3 is installed
OR libwps-devel-0.4.10-7.3 is installed
OR libwps-tools-0.4.10-7.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Public Cloud 15 is installed
AND Package Information
kernel-azure-4.12.14-5.41 is installed
OR kernel-azure-base-4.12.14-5.41 is installed
OR kernel-azure-devel-4.12.14-5.41 is installed
OR kernel-devel-azure-4.12.14-5.41 is installed
OR kernel-source-azure-4.12.14-5.41 is installed
OR kernel-syms-azure-4.12.14-5.41 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Public Cloud 15 SP1 is installed
AND python-azure-agent-2.2.45-3.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Server Applications 15 is installed
AND Package Information
ovmf-2017+git1510945757.b2662641d5-5.3 is installed
OR ovmf-tools-2017+git1510945757.b2662641d5-5.3 is installed
OR qemu-ovmf-x86_64-2017+git1510945757.b2662641d5-5.3 is installed
OR qemu-uefi-aarch64-2017+git1510945757.b2662641d5-5.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Server Applications 15 SP1 is installed
AND Package Information
389-ds-1.4.0.3-2 is installed
OR 389-ds-devel-1.4.0.3-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2 is installed
AND Package Information
libtiff5-4.0.7-35 is installed
OR libtiff5-32bit-4.0.7-35 is installed
OR tiff-4.0.7-35 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-BCL is installed
AND ucode-intel-20180425-13.20 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
AND
kgraft-patch-4_4_121-92_129-default-5-2 is installed
OR kgraft-patch-SLE12-SP2_Update_34-5-2 is installed
OR Package Information
SUSE Linux Enterprise Server for SAP Applications 12 SP2-ESPOS is installed
AND
kgraft-patch-4_4_121-92_129-default-5-2 is installed
OR kgraft-patch-SLE12-SP2_Update_34-5-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
AND Package Information
java-1_8_0-openjdk-1.8.0.171-27.19 is installed
OR java-1_8_0-openjdk-demo-1.8.0.171-27.19 is installed
OR java-1_8_0-openjdk-devel-1.8.0.171-27.19 is installed
OR java-1_8_0-openjdk-headless-1.8.0.171-27.19 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-LTSS is installed
AND Package Information
kgraft-patch-4_4_114-92_67-default-10-2 is installed
OR kgraft-patch-SLE12-SP2_Update_19-10-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3 is installed
AND autofs-5.0.9-27 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 12 SP3-BCL is installed
AND squid-3.5.21-26.23 is installed
OR Package Information
SUSE Linux Enterprise Server for SAP Applications 12 SP3-BCL is installed
AND squid-3.5.21-26.23 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
AND
ghostscript-9.27-23.31 is installed
OR ghostscript-x11-9.27-23.31 is installed
OR Package Information
SUSE Linux Enterprise Server for SAP Applications 12 SP3-ESPOS is installed
AND
ghostscript-9.27-23.31 is installed
OR ghostscript-x11-9.27-23.31 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 12 SP3-LTSS is installed
AND
pam_radius-1.3.16-239.4 is installed
OR pam_radius-32bit-1.3.16-239.4 is installed
OR Package Information
SUSE Linux Enterprise Server for SAP Applications 12 SP3-LTSS is installed
AND
pam_radius-1.3.16-239.4 is installed
OR pam_radius-32bit-1.3.16-239.4 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
AND
ovmf-2017+git1492060560.b6d11d7c46-4.12 is installed
OR ovmf-tools-2017+git1492060560.b6d11d7c46-4.12 is installed
OR qemu-ovmf-x86_64-2017+git1492060560.b6d11d7c46-4.12 is installed
OR Package Information
SUSE Linux Enterprise Server for SAP Applications 12 SP3-TERADATA is installed
AND
ovmf-2017+git1492060560.b6d11d7c46-4.12 is installed
OR ovmf-tools-2017+git1492060560.b6d11d7c46-4.12 is installed
OR qemu-ovmf-x86_64-2017+git1492060560.b6d11d7c46-4.12 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
AND shadow-4.2.1-27.19 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 12 SP4 is installed
AND
audiofile-0.3.6-11.3 is installed
OR libaudiofile1-0.3.6-11.3 is installed
OR libaudiofile1-32bit-0.3.6-11.3 is installed
OR Package Information
SUSE Linux Enterprise Server for SAP Applications 12 SP4 is installed
AND
audiofile-0.3.6-11.3 is installed
OR libaudiofile1-0.3.6-11.3 is installed
OR libaudiofile1-32bit-0.3.6-11.3 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 12 SP4-LTSS is installed
AND
LibVNCServer-0.9.9-17.31 is installed
OR libvncclient0-0.9.9-17.31 is installed
OR libvncserver0-0.9.9-17.31 is installed
OR Package Information
SUSE Linux Enterprise Server for SAP Applications 12 SP4-LTSS is installed
AND
LibVNCServer-0.9.9-17.31 is installed
OR libvncclient0-0.9.9-17.31 is installed
OR libvncserver0-0.9.9-17.31 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 12 SP5 is installed
AND ucode-intel-20191115-3.3 is installed
OR Package Information
SUSE Linux Enterprise Server for SAP Applications 12 SP5 is installed
AND ucode-intel-20191115-3.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 15-LTSS is installed
AND Package Information
freeradius-server-3.0.16-3.6 is installed
OR freeradius-server-devel-3.0.16-3.6 is installed
OR freeradius-server-krb5-3.0.16-3.6 is installed
OR freeradius-server-ldap-3.0.16-3.6 is installed
OR freeradius-server-libs-3.0.16-3.6 is installed
OR freeradius-server-mysql-3.0.16-3.6 is installed
OR freeradius-server-perl-3.0.16-3.6 is installed
OR freeradius-server-postgresql-3.0.16-3.6 is installed
OR freeradius-server-python-3.0.16-3.6 is installed
OR freeradius-server-sqlite-3.0.16-3.6 is installed
OR freeradius-server-utils-3.0.16-3.6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 is installed
AND Package Information
kernel-default-3.12.48-52.27 is installed
OR kernel-default-extra-3.12.48-52.27 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 SP1 is installed
AND Package Information
ImageMagick-6.8.8.1-59 is installed
OR libMagick++-6_Q16-3-6.8.8.1-59 is installed
OR libMagickCore-6_Q16-1-32bit-6.8.8.1-59 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 SP2 is installed
AND Package Information
gcc48-gij-4.8.5-31.3 is installed
OR gcc48-gij-32bit-4.8.5-31.3 is installed
OR libgcj48-4.8.5-31.3 is installed
OR libgcj48-32bit-4.8.5-31.3 is installed
OR libgcj48-jar-4.8.5-31.3 is installed
OR libgcj_bc1-4.8.5-31.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 SP3 is installed
AND Package Information
libSoundTouch0-32bit-1.7.1-5.3 is installed
OR soundtouch-1.7.1-5.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 SP4 is installed
AND Package Information
libmysqlclient_r18-10.0.40.3-2.15 is installed
OR libmysqlclient_r18-32bit-10.0.40.3-2.15 is installed
OR mariadb-100-10.0.40.3-2.15 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 15 is installed
AND Package Information
freerdp-2.0.0~rc2-1 is installed
OR freerdp-devel-2.0.0~rc2-1 is installed
OR libfreerdp2-2.0.0~rc2-1 is installed
OR libwinpr2-2.0.0~rc2-1 is installed
OR winpr2-devel-2.0.0~rc2-1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 15 SP1 is installed
AND Package Information
openconnect-7.08-6.3 is installed
OR openconnect-devel-7.08-6.3 is installed
OR openconnect-lang-7.08-6.3 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 7 is installed
AND Package Information
gnutls-3.2.15-18.6 is installed
OR libgnutls-openssl27-3.2.15-18.6 is installed
OR libgnutls28-3.2.15-18.6 is installed
OR libgnutls28-32bit-3.2.15-18.6 is installed
|