CWE
416 362
Advisory Published

RHSA-2020:2854: Important: kernel-alt security and bug fix update

First published: Tue Jul 07 2020(Updated: )

The kernel-alt packages provide the Linux kernel version 4.x.<br>Security Fix(es):<br><li> kernel: nfs: use-after-free in svc_process_common() (CVE-2018-16884)</li> <li> Kernel: ppc: kvm: conflicting use of HSTATE_HOST_R1 to store r1 state leads to host stack corruption (CVE-2020-8834)</li> <li> Kernel: vfio: access to disabled MMIO space of some devices may lead to DoS scenario (CVE-2020-12888)</li> <li> kernel: use after free due to race condition in the video driver leads to local privilege escalation (CVE-2019-9458)</li> <li> kernel: use-after-free in drivers/char/ipmi/ipmi_si_intf.c, ipmi_si_mem_io.c, ipmi_si_port_io.c (CVE-2019-11811)</li> <li> kernel: use-after-free in drivers/bluetooth/hci_ldisc.c (CVE-2019-15917)</li> <li> kernel: memory leak in ccp_run_sha_cmd() function in drivers/crypto/ccp/ccp-ops.c (CVE-2019-18808)</li> <li> kernel: use-after-free in __ext4_expand_extra_isize and ext4_xattr_set_entry related to fs/ext4/inode.c and fs/ext4/super.c (CVE-2019-19767)</li> <li> kernel: an out-of-bounds write via crafted keycode table (CVE-2019-20636)</li> <li> kernel: use-after-free read in napi_gro_frags() in the Linux kernel (CVE-2020-10720)</li> <li> kernel: out-of-bounds write in mpol_parse_str function in mm/mempolicy.c (CVE-2020-11565)</li> <li> kernel: A memory leak in the crypto_report() function in crypto/crypto_user_base.c allows for a DoS (CVE-2019-19062)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.<br>Bug Fix(es):<br><li> XFS: Metadata corruption detected at xfs_attr3_leaf_read_verify [rhel-alt-7.6.z] (BZ#1830836)</li>

Affected SoftwareAffected VersionHow to fix
redhat/kernel-alt<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/kernel-abi-whitelists<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-debug<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/kernel-debug-debuginfo<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/kernel-debug-devel<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/kernel-debuginfo<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/kernel-debuginfo-common-aarch64<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/kernel-devel<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/kernel-doc<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-headers<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/kernel-tools<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/kernel-tools-debuginfo<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/kernel-tools-libs<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/kernel-tools-libs-devel<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/perf<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/perf-debuginfo<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/python-perf<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/python-perf-debuginfo<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/kernel<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-bootwrapper<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-debug<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-debug-debuginfo<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-debug-devel<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-debuginfo<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-debuginfo-common-ppc64le<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-devel<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-headers<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-tools<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-tools-debuginfo<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-tools-libs<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-tools-libs-devel<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/perf<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/perf-debuginfo<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/python-perf<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/python-perf-debuginfo<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-debug<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-debug-debuginfo<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-debug-devel<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-debuginfo<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-debuginfo-common-s390x<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-devel<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-headers<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-kdump<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-kdump-debuginfo<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-kdump-devel<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/perf<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/perf-debuginfo<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/python-perf<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/python-perf-debuginfo<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203