First published: Mon Oct 19 2020(Updated: )
The kernel-alt packages provide the Linux kernel version 4.x.<br>Security Fix(es):<br><li> kernel: net: bluetooth: type confusion while processing AMP packets (CVE-2020-12351)</li> <li> kernel: net: bluetooth: information leak when processing certain AMP packets (CVE-2020-12352)</li> <li> kernel: information exposure in drivers/char/random.c and kernel/time/timer.c (CVE-2020-16166)</li> <li> kernel: TOCTOU mismatch in the NFS client code (CVE-2020-25212)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/kernel-alt | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/kernel | <4.14.0-115.32.1.el7a.aa | 4.14.0-115.32.1.el7a.aa |
redhat/kernel-abi-whitelists | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/kernel-debug | <4.14.0-115.32.1.el7a.aa | 4.14.0-115.32.1.el7a.aa |
redhat/kernel-debug-debuginfo | <4.14.0-115.32.1.el7a.aa | 4.14.0-115.32.1.el7a.aa |
redhat/kernel-debug-devel | <4.14.0-115.32.1.el7a.aa | 4.14.0-115.32.1.el7a.aa |
redhat/kernel-debuginfo | <4.14.0-115.32.1.el7a.aa | 4.14.0-115.32.1.el7a.aa |
redhat/kernel-debuginfo-common-aarch64 | <4.14.0-115.32.1.el7a.aa | 4.14.0-115.32.1.el7a.aa |
redhat/kernel-devel | <4.14.0-115.32.1.el7a.aa | 4.14.0-115.32.1.el7a.aa |
redhat/kernel-doc | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/kernel-headers | <4.14.0-115.32.1.el7a.aa | 4.14.0-115.32.1.el7a.aa |
redhat/kernel-tools | <4.14.0-115.32.1.el7a.aa | 4.14.0-115.32.1.el7a.aa |
redhat/kernel-tools-debuginfo | <4.14.0-115.32.1.el7a.aa | 4.14.0-115.32.1.el7a.aa |
redhat/kernel-tools-libs | <4.14.0-115.32.1.el7a.aa | 4.14.0-115.32.1.el7a.aa |
redhat/kernel-tools-libs-devel | <4.14.0-115.32.1.el7a.aa | 4.14.0-115.32.1.el7a.aa |
redhat/perf | <4.14.0-115.32.1.el7a.aa | 4.14.0-115.32.1.el7a.aa |
redhat/perf-debuginfo | <4.14.0-115.32.1.el7a.aa | 4.14.0-115.32.1.el7a.aa |
redhat/python-perf | <4.14.0-115.32.1.el7a.aa | 4.14.0-115.32.1.el7a.aa |
redhat/python-perf-debuginfo | <4.14.0-115.32.1.el7a.aa | 4.14.0-115.32.1.el7a.aa |
redhat/kernel | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/kernel-bootwrapper | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/kernel-debug | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/kernel-debug-debuginfo | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/kernel-debug-devel | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/kernel-debuginfo | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/kernel-debuginfo-common-ppc64le | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/kernel-devel | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/kernel-headers | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/kernel-tools | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/kernel-tools-debuginfo | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/kernel-tools-libs | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/kernel-tools-libs-devel | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/perf | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/perf-debuginfo | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/python-perf | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/python-perf-debuginfo | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/kernel | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/kernel-debug | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/kernel-debug-debuginfo | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/kernel-debug-devel | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/kernel-debuginfo | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/kernel-debuginfo-common-s390x | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/kernel-devel | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/kernel-headers | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/kernel-kdump | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/kernel-kdump-debuginfo | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/kernel-kdump-devel | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/perf | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/perf-debuginfo | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/python-perf | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
redhat/python-perf-debuginfo | <4.14.0-115.32.1.el7a | 4.14.0-115.32.1.el7a |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2020:4279 is classified as a moderate risk due to potential information leaks and type confusion in Bluetooth processing.
To fix RHSA-2020:4279, update your kernel-alt and related packages to version 4.14.0-115.32.1.el7a or above.
RHSA-2020:4279 addresses CVE-2020-12351 and CVE-2020-12352 related to Bluetooth AMP packet processing.
Yes, you should be concerned as the vulnerabilities can lead to information leaks and type confusion in Bluetooth communications.
The affected software includes various kernel-alt packages and derivatives on the Red Hat Enterprise Linux 7 system.