Oval Definition:oval:org.opensuse.security:def:59346
Revision Date:2020-12-01Version:1
Title:Security update for the Linux Kernel (Important)
Description:



The SUSE Linux Enterprise 12 SP2 kernel was updated to receive various security and bug fixes.



The following security bugs were fixed:

- CVE-2020-25705: A flaw in the way reply ICMP packets are limited in was found that allowed to quickly scan open UDP ports. This flaw allowed an off-path remote user to effectively bypassing source port UDP randomization. The highest threat from this vulnerability is to confidentiality and possibly integrity, because software and services that rely on UDP source port randomization (like DNS) are indirectly affected as well. Kernel versions may be vulnerable to this issue (bsc#1175721, bsc#1178782). - CVE-2020-25656: Fixed a concurrency use-after-free in vt_do_kdgkb_ioctl (bnc#1177766). - CVE-2017-18204: Fixed a denial of service in the ocfs2_setattr function of fs/ocfs2/file.c (bnc#1083244). - CVE-2020-14351: Fixed a race in the perf_mmap_close() function (bsc#1177086). - CVE-2020-8694: Restricted energy meter to root access (bsc#1170415). - CVE-2020-12352: Fixed an information leak when processing certain AMP packets aka 'BleedingTooth' (bsc#1177725). - CVE-2020-25645: Fixed an an issue in IPsec that caused traffic between two Geneve endpoints to be unencrypted (bnc#1177511). - CVE-2020-14381: Fixed a use-after-free in the fast user mutex (futex) wait operation, which could have lead to memory corruption and possibly privilege escalation (bsc#1176011). - CVE-2020-25212: Fixed A TOCTOU mismatch in the NFS client code which could have been used by local attackers to corrupt memory (bsc#1176381). - CVE-2020-14390: Fixed an out-of-bounds memory write leading to memory corruption or a denial of service when changing screen size (bnc#1176235). - CVE-2020-25643: Fixed a memory corruption and a read overflow which could have caused by improper input validation in the ppp_cp_parse_cr function (bsc#1177206). - CVE-2020-26088: Fixed an improper CAP_NET_RAW check in NFC socket creation could have been used by local attackers to create raw sockets, bypassing security mechanisms (bsc#1176990). - CVE-2020-0432: Fixed an out of bounds write due to an integer overflow (bsc#1176721). - CVE-2020-0431: Fixed an out of bounds write due to a missing bounds check (bsc#1176722). - CVE-2020-0427: Fixed an out of bounds read due to a use after free (bsc#1176725). - CVE-2020-0404: Fixed a linked list corruption due to an unusual root cause (bsc#1176423). - CVE-2020-25284: Fixed an incomplete permission checking for access to rbd devices, which could have been leveraged by local attackers to map or unmap rbd block devices (bsc#1176482).

The following non-security bugs were fixed:

- btrfs: fix race with relocation recovery and fs_root setup (bsc#1131277). - btrfs: flush_space always takes fs_info->fs_root (bsc#1131277). - btrfs: btrfs_init_new_device should use fs_info->dev_root (bsc#1131277, bsc#1176922). - btrfs: btrfs_test_opt and friends should take a btrfs_fs_info (bsc#1131277, bsc#1176922). - btrfs: call functions that always use the same root with fs_info instead (bsc#1131277, bsc#1176922). - btrfs: call functions that overwrite their root parameter with fs_info (bsc#1131277, bsc#1176922). - btrfs: flush_space always takes fs_info->fs_root (bsc#1131277, bsc#1176922). - btrfs: pull node/sector/stripe sizes out of root and into fs_info (bsc#1131277, bsc#1176922). - btrfs: Remove fs_info argument of btrfs_write_and_wait_transaction (bsc#1131277, bsc#1176922). - btrfs: remove root parameter from transaction commit/end routines (bsc#1131277, bsc#1176922). - btrfs: remove root usage from can_overcommit (bsc#1131277, bsc#1176922). - btrfs: root->fs_info cleanup, access fs_info->delayed_root directly (bsc#1131277, bsc#1176922). - btrfs: root->fs_info cleanup, add fs_info convenience variables (bsc#1131277, bsc#1176922). - btrfs: root->fs_info cleanup, btrfs_calc_{trans,trunc}_metadata_size (bsc#1131277, bsc#1176922). - btrfs: root->fs_info cleanup, update_block_group{,flags} (bsc#1131277, bsc#1176922). - btrfs: root->fs_info cleanup, use fs_info->dev_root everywhere (bsc#1131277, bsc#1176922). - btrfs: split btrfs_wait_marked_extents into normal and tree log functions (bsc#1131277, bsc#1176922). - btrfs: struct btrfsic_state->root should be an fs_info (bsc#1131277, bsc#1176922). - btrfs: take an fs_info directly when the root is not used otherwise (bsc#1131277, bsc#1176922). - xen/blkback: use lateeoi irq binding (XSA-332 bsc#1177411). - xen: do not reschedule in preemption off sections (bsc#1175749). - xen/events: add a new 'late EOI' evtchn framework (XSA-332 bsc#1177411). - xen/events: add a proper barrier to 2-level uevent unmasking (XSA-332 bsc#1177411). - xen/events: avoid removing an event channel while handling it (XSA-331 bsc#1177410). - xen/events: block rogue events for some time (XSA-332 bsc#1177411). - xen/events: defer eoi in case of excessive number of events (XSA-332 bsc#1177411). - xen/events: do not use chip_data for legacy IRQs (XSA-332 bsc#1065600). - xen/events: fix race in evtchn_fifo_unmask() (XSA-332 bsc#1177411). - xen/events: switch user event channels to lateeoi model (XSA-332 bsc#1177411). - xen/events: use a common cpu hotplug hook for event channels (XSA-332 bsc#1177411). - xen/netback: use lateeoi irq binding (XSA-332 bsc#1177411). - xen/pciback: use lateeoi irq binding (XSA-332 bsc#1177411). - xen/scsiback: use lateeoi irq binding (XSA-332 bsc#1177411). - XEN uses irqdesc::irq_data_common::handler_data to store a per interrupt XEN data pointer which contains XEN specific information (XSA-332 bsc#1065600).
Family:unixClass:patch
Status:Reference(s):1016715
1043983
1048072
1055265
1056286
1056782
1058754
1058755
1058757
1062452
1065600
1069607
1069632
1073002
1077358
1078782
1082007
1082008
1082009
1082010
1082011
1082014
1082058
1083244
1087433
1087434
1087436
1087437
1087440
1087441
1098369
1099510
1101288
1104668
1104826
1112530
1112532
1120374
1122319
1122983
1130611
1130617
1130620
1130622
1130623
1130627
1131277
1152107
1152990
1152992
1152994
1152995
1160968
1163985
1170415
1171517
1172275
1173798
1174205
1174628
1174633
1174635
1174638
1174757
1174771
1175112
1175127
1175228
1175691
1175721
1175749
1176011
1176069
1176235
1176253
1176278
1176381
1176382
1176423
1176482
1176721
1176722
1176725
1176896
1176922
1176990
1177027
1177086
1177165
1177206
1177226
1177410
1177411
1177511
1177513
1177725
1177766
1178782
925502
995352
CVE-2010-1172
CVE-2011-0465
CVE-2013-0292
CVE-2015-2775
CVE-2015-8803
CVE-2015-8804
CVE-2015-8805
CVE-2015-9096
CVE-2016-0705
CVE-2016-2339
CVE-2016-4975
CVE-2016-6489
CVE-2016-6893
CVE-2016-7798
CVE-2016-8743
CVE-2017-0898
CVE-2017-0899
CVE-2017-0900
CVE-2017-0901
CVE-2017-0902
CVE-2017-0903
CVE-2017-10784
CVE-2017-14033
CVE-2017-14064
CVE-2017-17405
CVE-2017-17742
CVE-2017-17790
CVE-2017-18204
CVE-2017-3732
CVE-2017-3736
CVE-2017-9228
CVE-2017-9229
CVE-2018-0618
CVE-2018-1000073
CVE-2018-1000074
CVE-2018-1000075
CVE-2018-1000076
CVE-2018-1000077
CVE-2018-1000078
CVE-2018-1000079
CVE-2018-12539
CVE-2018-13796
CVE-2018-1517
CVE-2018-16395
CVE-2018-16396
CVE-2018-1656
CVE-2018-18500
CVE-2018-18501
CVE-2018-18505
CVE-2018-2940
CVE-2018-2952
CVE-2018-2964
CVE-2018-2973
CVE-2018-3760
CVE-2018-5950
CVE-2018-6914
CVE-2018-8777
CVE-2018-8778
CVE-2018-8779
CVE-2018-8780
CVE-2019-15845
CVE-2019-16201
CVE-2019-16254
CVE-2019-16255
CVE-2019-16746
CVE-2019-6116
CVE-2019-8320
CVE-2019-8321
CVE-2019-8322
CVE-2019-8323
CVE-2019-8324
CVE-2019-8325
CVE-2020-0404
CVE-2020-0427
CVE-2020-0431
CVE-2020-0432
CVE-2020-10663
CVE-2020-12352
CVE-2020-14314
CVE-2020-14331
CVE-2020-14344
CVE-2020-14345
CVE-2020-14346
CVE-2020-14347
CVE-2020-14351
CVE-2020-14381
CVE-2020-14386
CVE-2020-14390
CVE-2020-16166
CVE-2020-1720
CVE-2020-25212
CVE-2020-25284
CVE-2020-25643
CVE-2020-25645
CVE-2020-25656
CVE-2020-25705
CVE-2020-2583
CVE-2020-2590
CVE-2020-2593
CVE-2020-2601
CVE-2020-2604
CVE-2020-26088
CVE-2020-2654
CVE-2020-2659
CVE-2020-8694
SUSE-SU-2018:2176-1
SUSE-SU-2018:2815-2
SUSE-SU-2018:4296-1
SUSE-SU-2019:0144-1
SUSE-SU-2019:0336-1
SUSE-SU-2020:0261-1
SUSE-SU-2020:0715-1
SUSE-SU-2020:2117-1
SUSE-SU-2020:2331-1
SUSE-SU-2020:2582-1
SUSE-SU-2020:3501-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP4-LTSS
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • python3-cupshelpers-1.5.7-lp150.5 is installed
  • OR system-config-printer-1.5.7-lp150.5 is installed
  • OR system-config-printer-applet-1.5.7-lp150.5 is installed
  • OR system-config-printer-common-1.5.7-lp150.5 is installed
  • OR system-config-printer-common-lang-1.5.7-lp150.5 is installed
  • OR system-config-printer-dbus-service-1.5.7-lp150.5 is installed
  • OR udev-configure-printer-1.5.7-lp150.5 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • python-Twisted-17.9.0-lp151.3.3 is installed
  • OR python-Twisted-doc-17.9.0-lp151.3.3 is installed
  • OR python2-Twisted-17.9.0-lp151.3.3 is installed
  • OR python3-Twisted-17.9.0-lp151.3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • apache2-2.4.23-29.24 is installed
  • OR apache2-doc-2.4.23-29.24 is installed
  • OR apache2-example-pages-2.4.23-29.24 is installed
  • OR apache2-prefork-2.4.23-29.24 is installed
  • OR apache2-utils-2.4.23-29.24 is installed
  • OR apache2-worker-2.4.23-29.24 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • java-1_8_0-ibm-1.8.0_sr5.20-30.36 is installed
  • OR java-1_8_0-ibm-alsa-1.8.0_sr5.20-30.36 is installed
  • OR java-1_8_0-ibm-devel-1.8.0_sr5.20-30.36 is installed
  • OR java-1_8_0-ibm-plugin-1.8.0_sr5.20-30.36 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kernel-default-4.4.121-92.146 is installed
  • OR kernel-default-base-4.4.121-92.146 is installed
  • OR kernel-default-devel-4.4.121-92.146 is installed
  • OR kernel-default-man-4.4.121-92.146 is installed
  • OR kernel-devel-4.4.121-92.146 is installed
  • OR kernel-macros-4.4.121-92.146 is installed
  • OR kernel-source-4.4.121-92.146 is installed
  • OR kernel-syms-4.4.121-92.146 is installed
  • OR kgraft-patch-4_4_121-92_146-default-1-3.5 is installed
  • OR kgraft-patch-SLE12-SP2_Update_38-1-3.5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • dbus-1-glib-0.100.2-3 is installed
  • OR dbus-1-glib-32bit-0.100.2-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • libjpeg-turbo-1.5.3-31.19 is installed
  • OR libjpeg62-62.2.0-31.19 is installed
  • OR libjpeg62-32bit-62.2.0-31.19 is installed
  • OR libjpeg62-turbo-1.5.3-31.19 is installed
  • OR libjpeg8-8.1.2-31.19 is installed
  • OR libjpeg8-32bit-8.1.2-31.19 is installed
  • OR libturbojpeg0-8.1.2-31.19 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • java-1_8_0-openjdk-1.8.0.222-27.35 is installed
  • OR java-1_8_0-openjdk-demo-1.8.0.222-27.35 is installed
  • OR java-1_8_0-openjdk-devel-1.8.0.222-27.35 is installed
  • OR java-1_8_0-openjdk-headless-1.8.0.222-27.35 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • bzip2-1.0.6-30.8 is installed
  • OR bzip2-doc-1.0.6-30.8 is installed
  • OR libbz2-1-1.0.6-30.8 is installed
  • OR libbz2-1-32bit-1.0.6-30.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • libspice-server1-0.12.8-6 is installed
  • OR spice-0.12.8-6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND SuSEfirewall2-3.6.312.333-3.13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-LTSS is installed
  • AND squid-3.5.21-26.29 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • ruby2.1-rubygem-sprockets-2_12-2.12.5-1.4 is installed
  • OR rubygem-sprockets-2_12-2.12.5-1.4 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND mailman-2.1.17-3.23 is installed
  • BACK