RHSA-2020:3432: Important: kernel security update
The kernel packages contain the Linux kernel, the core of any Linux operating system.<br>Security Fix(es):<br><li> kernel: buffer overflow in mwifiexcmdappendvsietlv function in drivers/net/wireless/marvell/mwifiex/scan.c (CVE-2020-12653)</li> <li> kernel: heap-based buffer overflow in mwifiexretwmmgetstatus function in drivers/net/wireless/marvell/mwifiex/wmm.c (CVE-2020-12654)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2020:3432?
The severity of RHSA-2020:3432 is categorized as important.
How do I fix RHSA-2020:3432?
To fix RHSA-2020:3432, update to the kernel package version 3.10.0-693.72.1.el7 or later.
What vulnerabilities are addressed in RHSA-2020:3432?
RHSA-2020:3432 addresses a buffer overflow vulnerability in the mwifiex_cmd_append_vsie_tlv function which is part of the Linux kernel.
Which systems are affected by RHSA-2020:3432?
RHSA-2020:3432 affects Red Hat Enterprise Linux versions using kernel package 3.10.0-693.72.1.el7.
What is the recommended action for RHSA-2020:3432?
The recommended action for RHSA-2020:3432 is to apply the released kernel updates as soon as possible.