SUSE-SU-2020:2576-1

Source
https://www.suse.com/support/update/announcement/2020/suse-su-20202576-1/
Import Source
https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:2576-1.json
JSON Data
https://api.osv.dev/v1/vulns/SUSE-SU-2020:2576-1
Related
Published
2020-09-09T05:17:13Z
Modified
2020-09-09T05:17:13Z
Summary
Security update for the Linux Kernel
Details

The SUSE Linux Enterprise 12 SP2 kernel was updated to to receive various security and bugfixes.

The following security bugs were fixed:

  • CVE-2020-14314: Fixed a potential negative array index in do_split() (bsc#1173798).
  • CVE-2020-14331: Fixed a missing check in vgacon scrollback handling (bsc#1174205).
  • CVE-2020-16166: Fixed a potential issue which could have allowed remote attackers to make observations that help to obtain sensitive information about the internal state of the network RNG (bsc#1174757).
  • CVE-2019-16746: Fixed an improper check of the length of variable elements in a beacon head, leading to a buffer overflow (bsc#1152107).
  • CVE-2020-14386: Fixed a potential local privilege escalation via memory corruption (bsc#1176069).

The following non-security bug was fixed:

  • mm, vmstat: reduce zone->lock holding time by /proc/pagetypeinfo (bsc#1175691).
References

Affected packages

SUSE:OpenStack Cloud 7 / kernel-default

Package

Name
kernel-default
Purl
purl:rpm/suse/kernel-default&distro=SUSE%20OpenStack%20Cloud%207

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.141.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.141.1",
            "kernel-devel": "4.4.121-92.141.1",
            "kernel-default-base": "4.4.121-92.141.1",
            "kernel-default-man": "4.4.121-92.141.1",
            "kernel-default": "4.4.121-92.141.1",
            "kgraft-patch-4_4_121-92_141-default": "1-3.3.1",
            "kernel-source": "4.4.121-92.141.1",
            "kernel-syms": "4.4.121-92.141.1",
            "kernel-default-devel": "4.4.121-92.141.1"
        }
    ]
}

SUSE:OpenStack Cloud 7 / kernel-source

Package

Name
kernel-source
Purl
purl:rpm/suse/kernel-source&distro=SUSE%20OpenStack%20Cloud%207

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.141.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.141.1",
            "kernel-devel": "4.4.121-92.141.1",
            "kernel-default-base": "4.4.121-92.141.1",
            "kernel-default-man": "4.4.121-92.141.1",
            "kernel-default": "4.4.121-92.141.1",
            "kgraft-patch-4_4_121-92_141-default": "1-3.3.1",
            "kernel-source": "4.4.121-92.141.1",
            "kernel-syms": "4.4.121-92.141.1",
            "kernel-default-devel": "4.4.121-92.141.1"
        }
    ]
}

SUSE:OpenStack Cloud 7 / kernel-syms

Package

Name
kernel-syms
Purl
purl:rpm/suse/kernel-syms&distro=SUSE%20OpenStack%20Cloud%207

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.141.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.141.1",
            "kernel-devel": "4.4.121-92.141.1",
            "kernel-default-base": "4.4.121-92.141.1",
            "kernel-default-man": "4.4.121-92.141.1",
            "kernel-default": "4.4.121-92.141.1",
            "kgraft-patch-4_4_121-92_141-default": "1-3.3.1",
            "kernel-source": "4.4.121-92.141.1",
            "kernel-syms": "4.4.121-92.141.1",
            "kernel-default-devel": "4.4.121-92.141.1"
        }
    ]
}

SUSE:OpenStack Cloud 7 / kgraft-patch-SLE12-SP2_Update_37

Package

Name
kgraft-patch-SLE12-SP2_Update_37
Purl
purl:rpm/suse/kgraft-patch-SLE12-SP2_Update_37&distro=SUSE%20OpenStack%20Cloud%207

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1-3.3.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.141.1",
            "kernel-devel": "4.4.121-92.141.1",
            "kernel-default-base": "4.4.121-92.141.1",
            "kernel-default-man": "4.4.121-92.141.1",
            "kernel-default": "4.4.121-92.141.1",
            "kgraft-patch-4_4_121-92_141-default": "1-3.3.1",
            "kernel-source": "4.4.121-92.141.1",
            "kernel-syms": "4.4.121-92.141.1",
            "kernel-default-devel": "4.4.121-92.141.1"
        }
    ]
}

SUSE:Linux Enterprise High Availability Extension 12 SP2 / kernel-default

Package

Name
kernel-default
Purl
purl:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20High%20Availability%20Extension%2012%20SP2

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.141.1

Ecosystem specific

{
    "binaries": [
        {
            "dlm-kmp-default": "4.4.121-92.141.1",
            "gfs2-kmp-default": "4.4.121-92.141.1",
            "cluster-network-kmp-default": "4.4.121-92.141.1",
            "ocfs2-kmp-default": "4.4.121-92.141.1",
            "cluster-md-kmp-default": "4.4.121-92.141.1"
        }
    ]
}

SUSE:Linux Enterprise Server for SAP Applications 12 SP2 / kernel-default

Package

Name
kernel-default
Purl
purl:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP2

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.141.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.141.1",
            "kernel-devel": "4.4.121-92.141.1",
            "kernel-default-base": "4.4.121-92.141.1",
            "kernel-source": "4.4.121-92.141.1",
            "kgraft-patch-4_4_121-92_141-default": "1-3.3.1",
            "kernel-default": "4.4.121-92.141.1",
            "kernel-syms": "4.4.121-92.141.1",
            "kernel-default-devel": "4.4.121-92.141.1"
        }
    ]
}

SUSE:Linux Enterprise Server for SAP Applications 12 SP2 / kernel-source

Package

Name
kernel-source
Purl
purl:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP2

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.141.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.141.1",
            "kernel-devel": "4.4.121-92.141.1",
            "kernel-default-base": "4.4.121-92.141.1",
            "kernel-source": "4.4.121-92.141.1",
            "kgraft-patch-4_4_121-92_141-default": "1-3.3.1",
            "kernel-default": "4.4.121-92.141.1",
            "kernel-syms": "4.4.121-92.141.1",
            "kernel-default-devel": "4.4.121-92.141.1"
        }
    ]
}

SUSE:Linux Enterprise Server for SAP Applications 12 SP2 / kernel-syms

Package

Name
kernel-syms
Purl
purl:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP2

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.141.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.141.1",
            "kernel-devel": "4.4.121-92.141.1",
            "kernel-default-base": "4.4.121-92.141.1",
            "kernel-source": "4.4.121-92.141.1",
            "kgraft-patch-4_4_121-92_141-default": "1-3.3.1",
            "kernel-default": "4.4.121-92.141.1",
            "kernel-syms": "4.4.121-92.141.1",
            "kernel-default-devel": "4.4.121-92.141.1"
        }
    ]
}

SUSE:Linux Enterprise Server for SAP Applications 12 SP2 / kgraft-patch-SLE12-SP2_Update_37

Package

Name
kgraft-patch-SLE12-SP2_Update_37
Purl
purl:rpm/suse/kgraft-patch-SLE12-SP2_Update_37&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP2

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1-3.3.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.141.1",
            "kernel-devel": "4.4.121-92.141.1",
            "kernel-default-base": "4.4.121-92.141.1",
            "kernel-source": "4.4.121-92.141.1",
            "kgraft-patch-4_4_121-92_141-default": "1-3.3.1",
            "kernel-default": "4.4.121-92.141.1",
            "kernel-syms": "4.4.121-92.141.1",
            "kernel-default-devel": "4.4.121-92.141.1"
        }
    ]
}

SUSE:Linux Enterprise Server 12 SP2-LTSS / kernel-default

Package

Name
kernel-default
Purl
purl:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP2-LTSS

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.141.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.141.1",
            "kernel-devel": "4.4.121-92.141.1",
            "kernel-default-base": "4.4.121-92.141.1",
            "kernel-default-man": "4.4.121-92.141.1",
            "kernel-default": "4.4.121-92.141.1",
            "kgraft-patch-4_4_121-92_141-default": "1-3.3.1",
            "kernel-source": "4.4.121-92.141.1",
            "kernel-syms": "4.4.121-92.141.1",
            "kernel-default-devel": "4.4.121-92.141.1"
        }
    ]
}

SUSE:Linux Enterprise Server 12 SP2-LTSS / kernel-source

Package

Name
kernel-source
Purl
purl:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP2-LTSS

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.141.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.141.1",
            "kernel-devel": "4.4.121-92.141.1",
            "kernel-default-base": "4.4.121-92.141.1",
            "kernel-default-man": "4.4.121-92.141.1",
            "kernel-default": "4.4.121-92.141.1",
            "kgraft-patch-4_4_121-92_141-default": "1-3.3.1",
            "kernel-source": "4.4.121-92.141.1",
            "kernel-syms": "4.4.121-92.141.1",
            "kernel-default-devel": "4.4.121-92.141.1"
        }
    ]
}

SUSE:Linux Enterprise Server 12 SP2-LTSS / kernel-syms

Package

Name
kernel-syms
Purl
purl:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP2-LTSS

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.141.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.141.1",
            "kernel-devel": "4.4.121-92.141.1",
            "kernel-default-base": "4.4.121-92.141.1",
            "kernel-default-man": "4.4.121-92.141.1",
            "kernel-default": "4.4.121-92.141.1",
            "kgraft-patch-4_4_121-92_141-default": "1-3.3.1",
            "kernel-source": "4.4.121-92.141.1",
            "kernel-syms": "4.4.121-92.141.1",
            "kernel-default-devel": "4.4.121-92.141.1"
        }
    ]
}

SUSE:Linux Enterprise Server 12 SP2-LTSS / kgraft-patch-SLE12-SP2_Update_37

Package

Name
kgraft-patch-SLE12-SP2_Update_37
Purl
purl:rpm/suse/kgraft-patch-SLE12-SP2_Update_37&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP2-LTSS

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1-3.3.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.141.1",
            "kernel-devel": "4.4.121-92.141.1",
            "kernel-default-base": "4.4.121-92.141.1",
            "kernel-default-man": "4.4.121-92.141.1",
            "kernel-default": "4.4.121-92.141.1",
            "kgraft-patch-4_4_121-92_141-default": "1-3.3.1",
            "kernel-source": "4.4.121-92.141.1",
            "kernel-syms": "4.4.121-92.141.1",
            "kernel-default-devel": "4.4.121-92.141.1"
        }
    ]
}

SUSE:Linux Enterprise Server 12 SP2-BCL / kernel-default

Package

Name
kernel-default
Purl
purl:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP2-BCL

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.141.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.141.1",
            "kernel-devel": "4.4.121-92.141.1",
            "kernel-default-base": "4.4.121-92.141.1",
            "kernel-default": "4.4.121-92.141.1",
            "kernel-source": "4.4.121-92.141.1",
            "kernel-syms": "4.4.121-92.141.1",
            "kernel-default-devel": "4.4.121-92.141.1"
        }
    ]
}

SUSE:Linux Enterprise Server 12 SP2-BCL / kernel-source

Package

Name
kernel-source
Purl
purl:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP2-BCL

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.141.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.141.1",
            "kernel-devel": "4.4.121-92.141.1",
            "kernel-default-base": "4.4.121-92.141.1",
            "kernel-default": "4.4.121-92.141.1",
            "kernel-source": "4.4.121-92.141.1",
            "kernel-syms": "4.4.121-92.141.1",
            "kernel-default-devel": "4.4.121-92.141.1"
        }
    ]
}

SUSE:Linux Enterprise Server 12 SP2-BCL / kernel-syms

Package

Name
kernel-syms
Purl
purl:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP2-BCL

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.121-92.141.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-macros": "4.4.121-92.141.1",
            "kernel-devel": "4.4.121-92.141.1",
            "kernel-default-base": "4.4.121-92.141.1",
            "kernel-default": "4.4.121-92.141.1",
            "kernel-source": "4.4.121-92.141.1",
            "kernel-syms": "4.4.121-92.141.1",
            "kernel-default-devel": "4.4.121-92.141.1"
        }
    ]
}