Oval Definition:oval:org.opensuse.security:def:58331
Revision Date:2020-12-01Version:1
Title:Security update for the Linux Kernel (Important)
Description:

The SUSE Linux Enterprise 12 SP2 kernel was updated to to receive various security and bugfixes.

The following security bugs were fixed:



- CVE-2020-14314: Fixed a potential negative array index in do_split() (bsc#1173798). - CVE-2020-14331: Fixed a missing check in vgacon scrollback handling (bsc#1174205). - CVE-2020-16166: Fixed a potential issue which could have allowed remote attackers to make observations that help to obtain sensitive information about the internal state of the network RNG (bsc#1174757). - CVE-2019-16746: Fixed an improper check of the length of variable elements in a beacon head, leading to a buffer overflow (bsc#1152107). - CVE-2020-14386: Fixed a potential local privilege escalation via memory corruption (bsc#1176069).

The following non-security bug was fixed:

- mm, vmstat: reduce zone->lock holding time by /proc/pagetypeinfo (bsc#1175691).
Family:unixClass:patch
Status:Reference(s):1012964
1017646
1032680
1035829
1036304
1041830
1045060
1045062
1045065
1045735
1049825
1054028
1055478
1056995
1070737
1070851
1076192
1079334
1088705
1090338
1091624
1092413
1096740
1096803
1099847
1100028
1101349
1101820
1102429
1111657
1115375
1136976
1138748
1141780
1141782
1141783
1141784
1141785
1141786
1141787
1141789
1145092
1149792
1151021
1152107
1163927
1165631
1170603
1173798
1173942
1174205
1174757
1175476
1175691
1176012
1176069
1176382
1176896
1176931
903543
958791
981848
CVE-2015-8540
CVE-2016-10087
CVE-2016-9079
CVE-2017-11462
CVE-2017-3167
CVE-2017-3169
CVE-2017-7679
CVE-2017-9269
CVE-2018-10903
CVE-2018-3665
CVE-2018-7685
CVE-2019-10208
CVE-2019-14559
CVE-2019-14562
CVE-2019-14835
CVE-2019-16746
CVE-2019-2745
CVE-2019-2762
CVE-2019-2766
CVE-2019-2769
CVE-2019-2786
CVE-2019-2816
CVE-2019-2842
CVE-2019-7317
CVE-2019-8457
CVE-2020-0429
CVE-2020-0431
CVE-2020-11668
CVE-2020-12268
CVE-2020-14314
CVE-2020-14331
CVE-2020-14381
CVE-2020-14386
CVE-2020-16166
CVE-2020-1749
CVE-2020-25212
SUSE-SU-2016:3048-1
SUSE-SU-2017:0860-1
SUSE-SU-2017:1714-1
SUSE-SU-2017:2659-1
SUSE-SU-2018:1944-1
SUSE-SU-2019:1601-1
SUSE-SU-2019:2036-1
SUSE-SU-2020:0792-1
SUSE-SU-2020:1212-1
SUSE-SU-2020:2576-1
SUSE-SU-2020:3126-1
SUSE-SU-2020:3219-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • java-10-openjdk-10.0.1.0-lp150.1 is installed
  • OR java-10-openjdk-headless-10.0.1.0-lp150.1 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • tomcat-9.0.21-lp151.3.3 is installed
  • OR tomcat-admin-webapps-9.0.21-lp151.3.3 is installed
  • OR tomcat-docs-webapp-9.0.21-lp151.3.3 is installed
  • OR tomcat-el-3_0-api-9.0.21-lp151.3.3 is installed
  • OR tomcat-embed-9.0.21-lp151.3.3 is installed
  • OR tomcat-javadoc-9.0.21-lp151.3.3 is installed
  • OR tomcat-jsp-2_3-api-9.0.21-lp151.3.3 is installed
  • OR tomcat-jsvc-9.0.21-lp151.3.3 is installed
  • OR tomcat-lib-9.0.21-lp151.3.3 is installed
  • OR tomcat-servlet-4_0-api-9.0.21-lp151.3.3 is installed
  • OR tomcat-webapps-9.0.21-lp151.3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • MozillaFirefox-45.5.1esr-93 is installed
  • OR MozillaFirefox-translations-45.5.1esr-93 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • java-1_8_0-openjdk-1.8.0.222-27.35 is installed
  • OR java-1_8_0-openjdk-demo-1.8.0.222-27.35 is installed
  • OR java-1_8_0-openjdk-devel-1.8.0.222-27.35 is installed
  • OR java-1_8_0-openjdk-headless-1.8.0.222-27.35 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • libzypp-16.17.20-27.52 is installed
  • OR zypper-1.13.45-18.33 is installed
  • OR zypper-log-1.13.45-18.33 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_103-92_56-default-7-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_17-7-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND dnsmasq-2.76-17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • xen-4.9.4_08-3.66 is installed
  • OR xen-doc-html-4.9.4_08-3.66 is installed
  • OR xen-libs-4.9.4_08-3.66 is installed
  • OR xen-libs-32bit-4.9.4_08-3.66 is installed
  • OR xen-tools-4.9.4_08-3.66 is installed
  • OR xen-tools-domU-4.9.4_08-3.66 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_156-94_64-default-8-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_20-8-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_180-94_103-default-2-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_28-2-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • apache2-2.4.23-29.24 is installed
  • OR apache2-doc-2.4.23-29.24 is installed
  • OR apache2-example-pages-2.4.23-29.24 is installed
  • OR apache2-prefork-2.4.23-29.24 is installed
  • OR apache2-utils-2.4.23-29.24 is installed
  • OR apache2-worker-2.4.23-29.24 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • libpango-1_0-0-1.40.1-9 is installed
  • OR libpango-1_0-0-32bit-1.40.1-9 is installed
  • OR typelib-1_0-Pango-1_0-1.40.1-9 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • kernel-default-4.4.121-92.141 is installed
  • OR kernel-default-base-4.4.121-92.141 is installed
  • OR kernel-default-devel-4.4.121-92.141 is installed
  • OR kernel-default-man-4.4.121-92.141 is installed
  • OR kernel-devel-4.4.121-92.141 is installed
  • OR kernel-macros-4.4.121-92.141 is installed
  • OR kernel-source-4.4.121-92.141 is installed
  • OR kernel-syms-4.4.121-92.141 is installed
  • OR kgraft-patch-4_4_121-92_141-default-1-3.3 is installed
  • OR kgraft-patch-SLE12-SP2_Update_37-1-3.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • adns-1.4-103.3 is installed
  • OR libadns1-1.4-103.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • perl-5.18.2-12.20 is installed
  • OR perl-32bit-5.18.2-12.20 is installed
  • OR perl-base-5.18.2-12.20 is installed
  • OR perl-doc-5.18.2-12.20 is installed
  • BACK