MGASA-2021-0117

Source
https://advisories.mageia.org/MGASA-2021-0117.html
Import Source
https://advisories.mageia.org/MGASA-2021-0117.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2021-0117
Related
Published
2021-03-07T21:35:49Z
Modified
2022-02-17T18:21:47Z
Summary
Updated kernel packages fix security issues and possible filesystem corruption
Details

This kernel update is based on upstream 5.10.20 and fixes at least the following security issues:

A NULL pointer dereference flaw was found in the Linux kernel's GPU Nouveau driver functionality in versions prior to 5.12-rc1 in the way the user calls ioctl DRMIOCTLNOUVEAUCHANNELALLOC. This flaw allows a local user to crash the system. (CVE-2020-25639).

An issue was discovered in the Linux kernel through 5.11.3, as used with Xen PV. A certain part of the netback driver lacks necessary treatment of errors such as failed memory allocations (as a result of changes to the handling of grant mapping errors). A host OS denial of service may occur during misbehavior of a networking frontend driver. NOTE: this issue exists because of an incomplete fix for CVE-2021-26931. (CVE-2021-28038 / XSA-367)

An issue was discovered in the Linux kernel 5.9.x through 5.11.3, as used with Xen. In some less-common configurations, an x86 PV guest OS user can crash a Dom0 or driver domain via a large amount of I/O activity. The issue relates to misuse of guest physical addresses when a configuration has CONFIGXENUNPOPULATEDALLOC but not CONFIGXENBALLOONMEMORY_HOTPLUG. (CVE-2021-28039 / XSA-369)

It also adds a critical fix for filesystem level corruption: - on setups with swapfiles on filesystems sitting on top of brd, zram, btt or pmem, then when the system starts to swap out pages, at which point it corrupts filesystem blocks that don't belong to the swapfile.

It also adds the following fixes: - Input: elani2c - add new trackpoint report type 0x5F - Input: elantech - fix protocol errors for some trackpoints - net: usb: qmiwwan: support ZTE P685M modem - tty: fix up iteratettyread() EOVERFLOW handling - tty: fix up hungupttyread() conversion - tty: clean up legacy leftovers from ntty line discipline - tty: teach ntty line discipline about the new "cookie continuations" - tty: teach the ntty ICANON case about the new "cookie continuations" too - x8664-server config: * enable NUMA balancing * make CONNECTOR builtin to enable PROCEVENTS (mga#28312) * support 512 cores/threads

For other upstream fixes, see the referenced changelogs.

References
Credits

Affected packages

Mageia:8 / kernel

Package

Name
kernel
Purl
pkg:rpm/mageia/kernel?distro=mageia-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.10.20-2.mga8

Ecosystem specific

{
    "section": "core"
}

Mageia:8 / kmod-virtualbox

Package

Name
kmod-virtualbox
Purl
pkg:rpm/mageia/kmod-virtualbox?distro=mageia-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.1.18-18.mga8

Ecosystem specific

{
    "section": "core"
}

Mageia:8 / kmod-xtables-addons

Package

Name
kmod-xtables-addons
Purl
pkg:rpm/mageia/kmod-xtables-addons?distro=mageia-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.13-34.mga8

Ecosystem specific

{
    "section": "core"
}

Mageia:7 / kernel

Package

Name
kernel
Purl
pkg:rpm/mageia/kernel?distro=mageia-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.10.20-2.mga7

Ecosystem specific

{
    "section": "core"
}

Mageia:7 / kmod-virtualbox

Package

Name
kmod-virtualbox
Purl
pkg:rpm/mageia/kmod-virtualbox?distro=mageia-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.1.18-8.mga7

Ecosystem specific

{
    "section": "core"
}

Mageia:7 / kmod-xtables-addons

Package

Name
kmod-xtables-addons
Purl
pkg:rpm/mageia/kmod-xtables-addons?distro=mageia-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.13-14.mga7

Ecosystem specific

{
    "section": "core"
}