Red Hat Security Advisory: kernel-alt security and bug fix update
🔗 CVE IDs covered (12)
📋 Description
CVE-2018-16884 — kernel: nfs: use-after-free in svc_process_common() CVE-2019-9458 — kernel: use after free due to race condition in the video driver leads to local privilege escalation CVE-2019-11811 — kernel: use-after-free in drivers/char/ipmi/ipmi_si_intf.c, ipmi_si_mem_io.c, ipmi_si_port_io.c CVE-2019-15917 — kernel: use-after-free in drivers/bluetooth/hci_ldisc.c CVE-2019-18808 — kernel: memory leak in ccp_run_sha_cmd() function in drivers/crypto/ccp/ccp-ops.c CVE-2019-19062 — kernel: memory leak in the crypto_report() function in crypto/crypto_user_base.c allows for DoS CVE-2019-19767 — kernel: use-after-free in __ext4_expand_extra_isize and ext4_xattr_set_entry related to fs/ext4/inode.c and fs/ext4/super.c CVE-2019-20636 — kernel: out-of-bounds write via crafted keycode table CVE-2020-8834 — Kernel: ppc: kvm: conflicting use of HSTATE_HOST_R1 to store r1 state leads to host stack corruption CVE-2020-10720 — kernel: use-after-free read in napi_gro_frags() in the Linux kernel CVE-2020-11565 — kernel: out-of-bounds write in mpol_parse_str function in mm/mempolicy.c CVE-2020-12888 — Kernel: vfio: access to disabled MMIO space of some devices may lead to DoS scenario
🔗 References (15)
- selfhttps://access.redhat.com/errata/RHSA-2020:2854
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1660375
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1709180
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1760100
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1775021
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1777418
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1781204
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1786160
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1819377
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1819615
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1824059
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1824918
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1836244
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2020/rhsa-2020_2854.json