First published: Tue May 19 2020(Updated: )
The kernel packages contain the Linux kernel, the core of any Linux operating system.<br>Security Fix(es):<br><li> kernel: double free may be caused by the function allocate_trace_buffer in the file kernel/trace/trace.c (CVE-2017-18595)</li> <li> kernel: use-after-free in __blk_add_trace in kernel/trace/blktrace.c (CVE-2019-19768)</li> <li> Kernel: NetLabel: null pointer dereference while receiving CIPSO packet with null category may cause kernel panic (CVE-2020-10711)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/kernel | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/kernel | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/kernel-abi-whitelists | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/kernel-debug | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/kernel-debug-debuginfo | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/kernel-debug-devel | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/kernel-debuginfo | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/kernel-devel | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/kernel-doc | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/kernel-headers | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/kernel-tools | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/kernel-tools-debuginfo | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/kernel-tools-libs | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/kernel-tools-libs-devel | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/perf | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/perf-debuginfo | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/python-perf | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/python-perf-debuginfo | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/kernel | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/kernel-bootwrapper | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/kernel-debug | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/kernel-debug-debuginfo | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/kernel-debug-devel | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/kernel-debuginfo | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/kernel-debuginfo-common-ppc64le | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/kernel-devel | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/kernel-headers | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/kernel-tools | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/kernel-tools-debuginfo | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/kernel-tools-libs | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/kernel-tools-libs-devel | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/perf | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/perf-debuginfo | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/python-perf | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
redhat/python-perf-debuginfo | <3.10.0-693.67.1.el7 | 3.10.0-693.67.1.el7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2020:2214 is classified as important due to potential vulnerabilities in the kernel.
To fix RHSA-2020:2214, you should update your kernel package to version 3.10.0-693.67.1.el7 or later.
RHSA-2020:2214 addresses a double free vulnerability (CVE-2017-18595) and a use-after-free issue in the Linux kernel.
The RHSA-2020:2214 vulnerability affects several kernel-related packages including kernel, kernel-debug, and kernel-devel among others.
Yes, RHSA-2020:2214 primarily affects Red Hat Enterprise Linux (RHEL) systems running the specified kernel version.