RHSA-2020:5206: Moderate: kernel security and bug fix update
The kernel packages contain the Linux kernel, the core of any Linux operating system.Security Fix(es): kernel: out of bounds write in function i2csmbusxferemulated in drivers/i2c/i2c-core-smbus.c (CVE-2017-18551) kernel: out of bounds write in i2c driver leads to local escalation of privilege (CVE-2019-9454) kernel: Denial Of Service in the ipmibmcregister() function in drivers/char/ipmi/ipmimsghandler.c (CVE-2019-19046) kernel: mounting a crafted ext4 filesystem image, performing some operations, and unmounting can lead to a use-after-free in ext4putsuper in fs/ext4/super.c (CVE-2019-19447) kernel: sgwrite function lacks an sgremoverequest call in a certain failure case (CVE-2020-12770) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Bug Fix(es): [RHEL7] deadlock between page fault handler and getfreepages() (BZ#1889766) RHEL7.6: no-carrier configured interfaces causes soft lockups by mount.nfs and hang booting/shutdown process (BZ#1889772) RHEL7.7 zstream - ESS - kernel panic triggered by freelist pointer corruption (BZ#1893807)
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2020:5206?
The severity of RHSA-2020:5206 is classified as moderate due to potential out-of-bounds memory writes.
How do I fix RHSA-2020:5206?
To fix RHSA-2020:5206, you should update to the kernel version 3.10.0-1062.40.1.el7 or later.
What vulnerabilities are addressed in RHSA-2020:5206?
RHSA-2020:5206 addresses CVE-2017-18551, which involves out-of-bounds write issues in the i2c subsystem.
Which systems are affected by RHSA-2020:5206?
RHSA-2020:5206 affects systems running specific versions of the Red Hat Enterprise Linux kernel prior to 3.10.0-1062.40.1.el7.
What packages need to be updated for RHSA-2020:5206?
You need to update kernel, kernel-debug, kernel-devel, and other related packages specified in the advisory for RHSA-2020:5206.