Описание
Security update for the Linux Kernel (Live Patch 0 for SLE 12 SP5)
This update for the Linux Kernel 4.12.14-120 fixes several issues.
The following security issues were fixed:
- CVE-2019-14896: A heap-based buffer overflow vulnerability was found in the Marvell WiFi chip driver. A remote attacker could cause a denial of service (system crash) or, possibly execute arbitrary code, when the lbs_ibss_join_existing function is called after a STA connects to an AP (bsc#1157157).
- CVE-2019-14897: A stack-based buffer overflow was found in the Marvell WiFi chip driver. An attacker was able to cause a denial of service (system crash) or, possibly execute arbitrary code, when a STA works in IBSS mode (allows connecting stations together without the use of an AP) and connects to another STA (bsc#1157155).
- CVE-2019-10220: The CIFS implementation was vulnerable to a relative paths injection in directory entry lists (bsc#1144903).
- CVE-2019-17133: Fixed a Buffer Overflow in cfg80211_mgd_wext_giwessid() in net/wireless/wext-sme.c, because the function did not reject a long SSID IE (bsc#1153158).
- CVE-2019-14835: A buffer overflow flaw was fixed in the vhost functionality that translates virtqueue buffers to IOVs, logged the buffer descriptors during migration. A privileged guest user able to pass descriptors with invalid length to the host when migration is underway, could use this flaw to increase their privileges on the host (bsc#1150112).
- xen/pv: Fixed a boot up hang where domain_crash_sync was called from entry.S (bsc#1153811).
Список пакетов
SUSE Linux Enterprise Live Patching 12 SP5
Ссылки
- Link for SUSE-SU-2020:0183-1
- E-Mail link for SUSE-SU-2020:0183-1
- SUSE Security Ratings
- SUSE Bug 1103203
- SUSE Bug 1149841
- SUSE Bug 1151021
- SUSE Bug 1153108
- SUSE Bug 1153161
- SUSE Bug 1157770
- SUSE Bug 1160467
- SUSE Bug 1160468
- SUSE CVE CVE-2019-10220 page
- SUSE CVE CVE-2019-14835 page
- SUSE CVE CVE-2019-14896 page
- SUSE CVE CVE-2019-14897 page
- SUSE CVE CVE-2019-17133 page
Описание
Linux kernel CIFS implementation, version 4.9.0 is vulnerable to a relative paths injection in directory entry lists.
Затронутые продукты
Ссылки
- CVE-2019-10220
- SUSE Bug 1144903
- SUSE Bug 1153108
Описание
A buffer overflow flaw was found, in versions from 2.6.34 to 5.2.x, in the way Linux kernel's vhost functionality that translates virtqueue buffers to IOVs, logged the buffer descriptors during migration. A privileged guest user able to pass descriptors with invalid length to the host when migration is underway, could use this flaw to increase their privileges on the host.
Затронутые продукты
Ссылки
- CVE-2019-14835
- SUSE Bug 1150112
- SUSE Bug 1151021
Описание
A heap-based buffer overflow vulnerability was found in the Linux kernel, version kernel-2.6.32, in Marvell WiFi chip driver. A remote attacker could cause a denial of service (system crash) or, possibly execute arbitrary code, when the lbs_ibss_join_existing function is called after a STA connects to an AP.
Затронутые продукты
Ссылки
- CVE-2019-14896
- SUSE Bug 1157157
- SUSE Bug 1160468
Описание
A stack-based buffer overflow was found in the Linux kernel, version kernel-2.6.32, in Marvell WiFi chip driver. An attacker is able to cause a denial of service (system crash) or, possibly execute arbitrary code, when a STA works in IBSS mode (allows connecting stations together without the use of an AP) and connects to another STA.
Затронутые продукты
Ссылки
- CVE-2019-14897
- SUSE Bug 1157155
- SUSE Bug 1160467
- SUSE Bug 1160468
Описание
In the Linux kernel through 5.3.2, cfg80211_mgd_wext_giwessid in net/wireless/wext-sme.c does not reject a long SSID IE, leading to a Buffer Overflow.
Затронутые продукты
Ссылки
- CVE-2019-17133
- SUSE Bug 1153158
- SUSE Bug 1153161