The SUSE Linux Enterprise 15 SP2 Azure kernel was updated to receive various security and bugfixes.
The following security bugs were fixed:
CVE-2020-15780: A lockdown bypass for loading unsigned modules using ACPI table injection was fixed. (bsc#1173573)
CVE-2020-15393: Fixed a memory leak in usbtest_disconnect (bnc#1173514).
CVE-2020-12771: An issue was discovered in btree_gc_coalesce in drivers/md/bcache/btree.c has a deadlock if a coalescing operation fails (bnc#1171732).
CVE-2020-12888: The VFIO PCI driver mishandled attempts to access disabled memory space (bnc#1171868).
CVE-2020-10773: Fixed a memory leak on s390/s390x, in the cmm_timeout_hander in file arch/s390/mm/cmm.c (bnc#1172999).
CVE-2020-14416: Fixed a race condition in tty->disc_data handling in the slip and slcan line discipline could lead to a use-after-free. This affects drivers/net/slip/slip.c and drivers/net/can/slcan.c (bnc#1162002).
CVE-2020-10768: Fixed an issue with the prctl() function, where indirect branch speculation could be enabled even though it was diabled before (bnc#1172783).
CVE-2020-10766: Fixed an issue which allowed an attacker with a local account to disable SSBD protection (bnc#1172781).
CVE-2020-10767: Fixed an issue where Indirect Branch Prediction Barrier was disabled in certain circumstances, leaving the system open to a spectre v2 style attack (bnc#1172782).
CVE-2020-13974: Fixed a integer overflow in drivers/tty/vt/keyboard.c, if k_ascii is called several times in a row (bnc#1172775).
CVE-2019-20810: Fixed a memory leak in go7007_snd_init in drivers/media/usb/go7007/snd-go7007.c because it did not call snd_card_free for a failure path (bnc#1172458).
CVE-2019-20812: An issue was discovered in the prb_calc_retire_blk_tmo() function in net/packet/af_packet.c could result in a denial of service (CPU consumption and soft lockup) in a certain failure case involving TPACKET_V3 (bnc#1172453).
CVE-2019-19462: relay_open in kernel/relay.c in the Linux kernel allowed local users to cause a denial of service (such as relay blockage) by triggering a NULL alloc_percpu result (bnc#1158265).
CVE-2020-10732: A flaw was found in the implementation of Userspace core dumps. This flaw allowed an attacker with a local account to crash a trivial program and exfiltrate private kernel data (bnc#1171220).
CVE-2020-12656: Fixed a memory leak in gss_mech_free in the rpcsec_gss_krb5 implementation, caused by a lack of certain domain_release calls (bnc#1171219).
CVE-2020-10751: A flaw was found in the SELinux LSM hook implementation, where it incorrectly assumed that an skb would only contain a single netlink message. The hook would incorrectly only validate the first netlink message in the skb and allow or deny the rest of the messages within the skb with the granted permission without further processing (bnc#1171189).
CVE-2020-10711: A NULL pointer dereference flaw was found in the SELinux subsystem in versions This flaw occurs while importing the Commercial IP Security Option (CIPSO) protocol's category bitmap into the SELinux extensible bitmap via the' ebitmap_netlbl_import' routine. This flaw allowed a remote network user to crash the system kernel, resulting in a denial of service (bnc#1171191).
CVE-2020-12769: An issue was discovered in drivers/spi/spi-dw.c allowed attackers to cause a panic via concurrent calls to dw_spi_irq and dw_spi_transfer_one (bnc#1171983).
CVE-2020-13143: gadget_dev_desc_UDC_store in drivers/usb/gadget/configfs.c relies on kstrdup without considering the possibility of an internal '\0' value, which allowed attackers to trigger an out-of-bounds read (bnc#1171982).
The following non-security bugs were fixed:
ACPICA: Fixes for acpiExec namespace init file (git-fixes).
ACPI: configfs: Disallow loading ACPI tables when locked down (git-fixes).
ACPI: CPPC: Fix reference count leak in acpi_cppc_processor_probe() (git-fixes).
ACPI: GED: add support for _Exx / _Lxx handler methods (git-fixes).
ACPI: GED: use correct trigger type field in _Exx / _Lxx handling (git-fixes).
ACPI: PM: Avoid using power resources if there are none for D0 (git-fixes).
ACPI: sysfs: Fix pm_profile_attr type (git-fixes).
ACPI: sysfs: Fix reference count leak in acpi_sysfs_add_hotplug_profile() (git-fixes).
Add a GIT commit ID of already cherry-picked x86/platform patch
Add cherry-picked ID to the already applied pinctrl patch
af_unix: add compat_ioctl support (git-fixes).
agp/intel: Reinforce the barrier after GTT updates (git-fixes).
aio: fix async fsync creds (bsc#1173828).
ALSA: emu10k1: delete an unnecessary condition (git-fixes).
ALSA: es1688: Add the missed snd_card_free() (git-fixes).
ALSA: fireface: fix configuration error for nominal sampling transfer frequency (git-fixes).
ALSA: firewire-lib: fix invalid assignment to union data for directional parameter (git-fixes).
ALSA: hda: Add ElkhartLake HDMI codec vid (git-fixes).
ALSA: hda: add member to store ratio for stripe control (git-fixes).
ALSA: hda: Add NVIDIA codec IDs 9a & 9d through a0 to patch table (git-fixes).
ALSA: hda: add sienna_cichlid audio asic id for sienna_cichlid up (git-fixes).
ALSA: hda: Fix potential race in unsol event handler (git-fixes).
ALSA: hda/hdmi: fix failures at PCM open on Intel ICL and later (git-fixes).
ALSA: hda/hdmi: improve debug traces for stream lookups (git-fixes).
ALSA: hda - let hs_mic be picked ahead of hp_mic (git-fixes).
ALSA: hda/realtek - Add a model for Thinkpad T570 without DAC workaround (bsc#1172017).
ALSA: hda/realtek - add a pintbl quirk for several Lenovo machines (git-fixes).
ALSA: hda/realtek - Add LED class support for micmute LED (git-fixes).
ALSA: hda/realtek - Add more fixup entries for Clevo machines (git-fixes).
ALSA: hda/realtek: Add mute LED and micmute LED support for HP systems (git-fixes).
ALSA: hda/realtek - Add new codec supported for ALC287 (git-fixes).
ALSA: hda/realtek - Add quirk for MSI GE63 laptop (git-fixes).
ALSA: hda/realtek - Enable audio jacks of Acer vCopperbox with ALC269VC (git-fixes).
ALSA: hda/realtek: Enable headset mic of Acer C20-820 with ALC269VC (git-fixes).
ALSA: hda/realtek: Enable headset mic of Acer Veriton N4660G with ALC269VC (git-fixes).
ALSA: hda/realtek - Enable micmute LED on and HP system (git-fixes).
sch_choke: avoid potential panic in choke_reset() (networking-stable-20_05_12).
sched/cfs: change initial value of runnable_avg (bsc#1158765).
sched/core: Check cpus_mask, not cpus_ptr in __set_cpus_allowed_ptr(), to fix mask corruption (bnc#1155798 (CPU scheduler functional and performance backports)).
sched/core: Fix PI boosting between RT and DEADLINE tasks (bsc#1172823).