First published: Wed Jul 29 2020(Updated: )
The kernel packages contain the Linux kernel, the core of any Linux operating system.<br>Security Fix(es):<br><li> kernel: buffer overflow in mwifiex_cmd_append_vsie_tlv function in drivers/net/wireless/marvell/mwifiex/scan.c (CVE-2020-12653)</li> <li> kernel: heap-based buffer overflow in mwifiex_ret_wmm_get_status function in drivers/net/wireless/marvell/mwifiex/wmm.c (CVE-2020-12654)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.<br>Bug Fix(es):<br><li> kernel: provide infrastructure to support dual-signing of the kernel (foundation to help address CVE-2020-10713) (BZ#1837424)</li>
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/kernel | <3.10.0-327.90.2.el7 | 3.10.0-327.90.2.el7 |
redhat/kernel | <3.10.0-327.90.2.el7 | 3.10.0-327.90.2.el7 |
redhat/kernel-abi-whitelists | <3.10.0-327.90.2.el7 | 3.10.0-327.90.2.el7 |
redhat/kernel-debug | <3.10.0-327.90.2.el7 | 3.10.0-327.90.2.el7 |
redhat/kernel-debug-debuginfo | <3.10.0-327.90.2.el7 | 3.10.0-327.90.2.el7 |
redhat/kernel-debug-devel | <3.10.0-327.90.2.el7 | 3.10.0-327.90.2.el7 |
redhat/kernel-debuginfo | <3.10.0-327.90.2.el7 | 3.10.0-327.90.2.el7 |
redhat/kernel-devel | <3.10.0-327.90.2.el7 | 3.10.0-327.90.2.el7 |
redhat/kernel-doc | <3.10.0-327.90.2.el7 | 3.10.0-327.90.2.el7 |
redhat/kernel-headers | <3.10.0-327.90.2.el7 | 3.10.0-327.90.2.el7 |
redhat/kernel-tools | <3.10.0-327.90.2.el7 | 3.10.0-327.90.2.el7 |
redhat/kernel-tools-debuginfo | <3.10.0-327.90.2.el7 | 3.10.0-327.90.2.el7 |
redhat/kernel-tools-libs | <3.10.0-327.90.2.el7 | 3.10.0-327.90.2.el7 |
redhat/kernel-tools-libs-devel | <3.10.0-327.90.2.el7 | 3.10.0-327.90.2.el7 |
redhat/perf | <3.10.0-327.90.2.el7 | 3.10.0-327.90.2.el7 |
redhat/perf-debuginfo | <3.10.0-327.90.2.el7 | 3.10.0-327.90.2.el7 |
redhat/python-perf | <3.10.0-327.90.2.el7 | 3.10.0-327.90.2.el7 |
redhat/python-perf-debuginfo | <3.10.0-327.90.2.el7 | 3.10.0-327.90.2.el7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2020:3232 is classified as important.
To fix RHSA-2020:3232, you should update the kernel package to version 3.10.0-327.90.2.el7.
RHSA-2020:3232 addresses a buffer overflow vulnerability in the mwifiex_cmd_append_vsie_tlv function.
RHSA-2020:3232 affects systems running the kernel version prior to 3.10.0-327.90.2.el7.
After applying RHSA-2020:3232, it is advised to reboot the system to ensure all changes take effect.