[RHSA-2020:0374] kernel security and bug fix update

Severity Important
Affected Packages 47
CVEs 5

The kernel packages contain the Linux kernel, the core of any Linux operating system.

Security Fix(es):

  • kernel: heap overflow in mwifiex_update_vs_ie() function of Marvell WiFi driver (CVE-2019-14816)

  • kernel: heap-based buffer overflow in mwifiex_process_country_ie() function in drivers/net/wireless/marvell/mwifiex/sta_ioctl.c (CVE-2019-14895)

  • kernel: heap overflow in marvell/mwifiex/tdls.c (CVE-2019-14901)

  • kernel: buffer overflow in cfg80211_mgd_wext_giwessid in net/wireless/wext-sme.c (CVE-2019-17133)

  • kernel: incomplete fix for race condition between mmget_not_zero()/get_task_mm() and core dumping in CVE-2019-11599 (CVE-2019-14898)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Bug Fix(es):

  • [Azure][7.8] Include patch "PCI: hv: Avoid use of hv_pci_dev->pci_slot after freeing it" (BZ#1766089)

  • [Hyper-V][RHEL7.8] When accelerated networking is enabled on RedHat, network interface(eth0) moved to new network namespace does not obtain IP address. (BZ#1766093)

  • [Azure][RHEL 7.6] hv_vmbus probe pass-through GPU card failed (BZ#1766097)

  • SMB3: Do not error out on large file transfers if server responds with STATUS_INSUFFICIENT_RESOURCES (BZ#1767621)

  • Since RHEL commit 5330f5d09820 high load can cause dm-multipath path failures (BZ#1770113)

  • Hard lockup in free_one_page()->_raw_spin_lock() because sosreport command is reading from /proc/pagetypeinfo (BZ#1770732)

  • patchset for x86/atomic: Fix smp_mb__{before,after}_atomic() (BZ#1772812)

  • fix compat statfs64() returning EOVERFLOW for when _FILE_OFFSET_BITS=64 (BZ#1775678)

  • Guest crash after load cpuidle-haltpoll driver (BZ#1776289)

  • RHEL 7.7 long I/O stalls with bnx2fc from not masking off scope bits of retry delay value (BZ#1776290)

  • Multiple "mv" processes hung on a gfs2 filesystem (BZ#1777297)

  • Moving Egress IP will result in conntrack sessions being DESTROYED (BZ#1779564)

  • core: backports from upstream (BZ#1780033)

  • kernel BUG at arch/powerpc/platforms/pseries/lpar.c:482! (BZ#1780148)

  • Race between tty_open() and flush_to_ldisc() using the tty_struct->driver_data field. (BZ#1780163)

Package Affected Version
pkg:rpm/redhat/python-perf?arch=x86_64&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/python-perf?arch=s390x&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/python-perf?arch=ppc64le&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/python-perf?arch=ppc64&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/perf?arch=x86_64&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/perf?arch=s390x&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/perf?arch=ppc64le&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/perf?arch=ppc64&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel?arch=x86_64&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel?arch=s390x&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel?arch=ppc64le&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel?arch=ppc64&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-tools?arch=x86_64&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-tools?arch=ppc64le&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-tools?arch=ppc64&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-tools-libs?arch=x86_64&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-tools-libs?arch=ppc64le&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-tools-libs?arch=ppc64&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-tools-libs-devel?arch=x86_64&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-tools-libs-devel?arch=ppc64le&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-tools-libs-devel?arch=ppc64&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-kdump?arch=s390x&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-kdump-devel?arch=s390x&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-headers?arch=x86_64&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-headers?arch=s390x&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-headers?arch=ppc64le&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-headers?arch=ppc64&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-doc?distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-devel?arch=x86_64&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-devel?arch=s390x&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-devel?arch=ppc64le&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-devel?arch=ppc64&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-debug?arch=x86_64&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-debug?arch=s390x&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-debug?arch=ppc64le&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-debug?arch=ppc64&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-debug-devel?arch=x86_64&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-debug-devel?arch=s390x&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-debug-devel?arch=ppc64le&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-debug-devel?arch=ppc64&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-bootwrapper?arch=ppc64le&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-bootwrapper?arch=ppc64&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/kernel-abi-whitelists?distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/bpftool?arch=x86_64&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/bpftool?arch=s390x&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/bpftool?arch=ppc64le&distro=redhat-7 < 3.10.0-1062.12.1.el7
pkg:rpm/redhat/bpftool?arch=ppc64&distro=redhat-7 < 3.10.0-1062.12.1.el7
ID
RHSA-2020:0374
Severity
important
URL
https://access.redhat.com/errata/RHSA-2020:0374
Published
2020-02-04T00:00:00
(4 years ago)
Modified
2020-02-04T00:00:00
(4 years ago)
Rights
Copyright 2020 Red Hat, Inc.
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/redhat/python-perf?arch=x86_64&distro=redhat-7 redhat python-perf < 3.10.0-1062.12.1.el7 redhat-7 x86_64
Affected pkg:rpm/redhat/python-perf?arch=s390x&distro=redhat-7 redhat python-perf < 3.10.0-1062.12.1.el7 redhat-7 s390x
Affected pkg:rpm/redhat/python-perf?arch=ppc64le&distro=redhat-7 redhat python-perf < 3.10.0-1062.12.1.el7 redhat-7 ppc64le
Affected pkg:rpm/redhat/python-perf?arch=ppc64&distro=redhat-7 redhat python-perf < 3.10.0-1062.12.1.el7 redhat-7 ppc64
Affected pkg:rpm/redhat/perf?arch=x86_64&distro=redhat-7 redhat perf < 3.10.0-1062.12.1.el7 redhat-7 x86_64
Affected pkg:rpm/redhat/perf?arch=s390x&distro=redhat-7 redhat perf < 3.10.0-1062.12.1.el7 redhat-7 s390x
Affected pkg:rpm/redhat/perf?arch=ppc64le&distro=redhat-7 redhat perf < 3.10.0-1062.12.1.el7 redhat-7 ppc64le
Affected pkg:rpm/redhat/perf?arch=ppc64&distro=redhat-7 redhat perf < 3.10.0-1062.12.1.el7 redhat-7 ppc64
Affected pkg:rpm/redhat/kernel?arch=x86_64&distro=redhat-7 redhat kernel < 3.10.0-1062.12.1.el7 redhat-7 x86_64
Affected pkg:rpm/redhat/kernel?arch=s390x&distro=redhat-7 redhat kernel < 3.10.0-1062.12.1.el7 redhat-7 s390x
Affected pkg:rpm/redhat/kernel?arch=ppc64le&distro=redhat-7 redhat kernel < 3.10.0-1062.12.1.el7 redhat-7 ppc64le
Affected pkg:rpm/redhat/kernel?arch=ppc64&distro=redhat-7 redhat kernel < 3.10.0-1062.12.1.el7 redhat-7 ppc64
Affected pkg:rpm/redhat/kernel-tools?arch=x86_64&distro=redhat-7 redhat kernel-tools < 3.10.0-1062.12.1.el7 redhat-7 x86_64
Affected pkg:rpm/redhat/kernel-tools?arch=ppc64le&distro=redhat-7 redhat kernel-tools < 3.10.0-1062.12.1.el7 redhat-7 ppc64le
Affected pkg:rpm/redhat/kernel-tools?arch=ppc64&distro=redhat-7 redhat kernel-tools < 3.10.0-1062.12.1.el7 redhat-7 ppc64
Affected pkg:rpm/redhat/kernel-tools-libs?arch=x86_64&distro=redhat-7 redhat kernel-tools-libs < 3.10.0-1062.12.1.el7 redhat-7 x86_64
Affected pkg:rpm/redhat/kernel-tools-libs?arch=ppc64le&distro=redhat-7 redhat kernel-tools-libs < 3.10.0-1062.12.1.el7 redhat-7 ppc64le
Affected pkg:rpm/redhat/kernel-tools-libs?arch=ppc64&distro=redhat-7 redhat kernel-tools-libs < 3.10.0-1062.12.1.el7 redhat-7 ppc64
Affected pkg:rpm/redhat/kernel-tools-libs-devel?arch=x86_64&distro=redhat-7 redhat kernel-tools-libs-devel < 3.10.0-1062.12.1.el7 redhat-7 x86_64
Affected pkg:rpm/redhat/kernel-tools-libs-devel?arch=ppc64le&distro=redhat-7 redhat kernel-tools-libs-devel < 3.10.0-1062.12.1.el7 redhat-7 ppc64le
Affected pkg:rpm/redhat/kernel-tools-libs-devel?arch=ppc64&distro=redhat-7 redhat kernel-tools-libs-devel < 3.10.0-1062.12.1.el7 redhat-7 ppc64
Affected pkg:rpm/redhat/kernel-kdump?arch=s390x&distro=redhat-7 redhat kernel-kdump < 3.10.0-1062.12.1.el7 redhat-7 s390x
Affected pkg:rpm/redhat/kernel-kdump-devel?arch=s390x&distro=redhat-7 redhat kernel-kdump-devel < 3.10.0-1062.12.1.el7 redhat-7 s390x
Affected pkg:rpm/redhat/kernel-headers?arch=x86_64&distro=redhat-7 redhat kernel-headers < 3.10.0-1062.12.1.el7 redhat-7 x86_64
Affected pkg:rpm/redhat/kernel-headers?arch=s390x&distro=redhat-7 redhat kernel-headers < 3.10.0-1062.12.1.el7 redhat-7 s390x
Affected pkg:rpm/redhat/kernel-headers?arch=ppc64le&distro=redhat-7 redhat kernel-headers < 3.10.0-1062.12.1.el7 redhat-7 ppc64le
Affected pkg:rpm/redhat/kernel-headers?arch=ppc64&distro=redhat-7 redhat kernel-headers < 3.10.0-1062.12.1.el7 redhat-7 ppc64
Affected pkg:rpm/redhat/kernel-doc?distro=redhat-7 redhat kernel-doc < 3.10.0-1062.12.1.el7 redhat-7
Affected pkg:rpm/redhat/kernel-devel?arch=x86_64&distro=redhat-7 redhat kernel-devel < 3.10.0-1062.12.1.el7 redhat-7 x86_64
Affected pkg:rpm/redhat/kernel-devel?arch=s390x&distro=redhat-7 redhat kernel-devel < 3.10.0-1062.12.1.el7 redhat-7 s390x
Affected pkg:rpm/redhat/kernel-devel?arch=ppc64le&distro=redhat-7 redhat kernel-devel < 3.10.0-1062.12.1.el7 redhat-7 ppc64le
Affected pkg:rpm/redhat/kernel-devel?arch=ppc64&distro=redhat-7 redhat kernel-devel < 3.10.0-1062.12.1.el7 redhat-7 ppc64
Affected pkg:rpm/redhat/kernel-debug?arch=x86_64&distro=redhat-7 redhat kernel-debug < 3.10.0-1062.12.1.el7 redhat-7 x86_64
Affected pkg:rpm/redhat/kernel-debug?arch=s390x&distro=redhat-7 redhat kernel-debug < 3.10.0-1062.12.1.el7 redhat-7 s390x
Affected pkg:rpm/redhat/kernel-debug?arch=ppc64le&distro=redhat-7 redhat kernel-debug < 3.10.0-1062.12.1.el7 redhat-7 ppc64le
Affected pkg:rpm/redhat/kernel-debug?arch=ppc64&distro=redhat-7 redhat kernel-debug < 3.10.0-1062.12.1.el7 redhat-7 ppc64
Affected pkg:rpm/redhat/kernel-debug-devel?arch=x86_64&distro=redhat-7 redhat kernel-debug-devel < 3.10.0-1062.12.1.el7 redhat-7 x86_64
Affected pkg:rpm/redhat/kernel-debug-devel?arch=s390x&distro=redhat-7 redhat kernel-debug-devel < 3.10.0-1062.12.1.el7 redhat-7 s390x
Affected pkg:rpm/redhat/kernel-debug-devel?arch=ppc64le&distro=redhat-7 redhat kernel-debug-devel < 3.10.0-1062.12.1.el7 redhat-7 ppc64le
Affected pkg:rpm/redhat/kernel-debug-devel?arch=ppc64&distro=redhat-7 redhat kernel-debug-devel < 3.10.0-1062.12.1.el7 redhat-7 ppc64
Affected pkg:rpm/redhat/kernel-bootwrapper?arch=ppc64le&distro=redhat-7 redhat kernel-bootwrapper < 3.10.0-1062.12.1.el7 redhat-7 ppc64le
Affected pkg:rpm/redhat/kernel-bootwrapper?arch=ppc64&distro=redhat-7 redhat kernel-bootwrapper < 3.10.0-1062.12.1.el7 redhat-7 ppc64
Affected pkg:rpm/redhat/kernel-abi-whitelists?distro=redhat-7 redhat kernel-abi-whitelists < 3.10.0-1062.12.1.el7 redhat-7
Affected pkg:rpm/redhat/bpftool?arch=x86_64&distro=redhat-7 redhat bpftool < 3.10.0-1062.12.1.el7 redhat-7 x86_64
Affected pkg:rpm/redhat/bpftool?arch=s390x&distro=redhat-7 redhat bpftool < 3.10.0-1062.12.1.el7 redhat-7 s390x
Affected pkg:rpm/redhat/bpftool?arch=ppc64le&distro=redhat-7 redhat bpftool < 3.10.0-1062.12.1.el7 redhat-7 ppc64le
Affected pkg:rpm/redhat/bpftool?arch=ppc64&distro=redhat-7 redhat bpftool < 3.10.0-1062.12.1.el7 redhat-7 ppc64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...