FlawAtlas
Search the atlas
SUSE-SU-2020:2582-1 Not scored

Security update for the Linux Kernel

The SUSE Linux Enterprise 12 SP3 kernel was updated to receive various security and bugfixes. The following security bugs were fixed: - CVE-2020-14314: Fixed a potential negative array index in do_split() (bsc#1173798). - CVE-2020-14331: Fixed a missing check in vgacon scrollback handling (bsc#1174205). - CVE-2020-16166: Fixed a potential issue which could have allowed remote attackers to make observations that help to obtain sensitive information about the internal state of the network RNG (bsc#1174757). - CVE-2019-16746: Fixed an improper check of the length of variable elements in a beacon head, leading to a buffer overflow (bsc#1152107). - CVE-2020-14386: Fixed a potential local privilege escalation via memory corruption (bsc#1176069). The following non-security bugs were fixed: - bonding: fix active-backup failover for current ARP slave (bsc#1174771). - Drivers: hv: vmbus: Only notify Hyper-V for die events that are oops (bsc#1175127). - ibmvnic: Fix IRQ mapping disposal in error path (bsc#1175112 ltc#187459). - mm, vmstat: reduce zone->lock holding time by /proc/pagetypeinfo (bsc#1175691). - ocfs2: add trimfs dlm lock resource (bsc#1175228). - ocfs2: add trimfs lock to avoid duplicated trims in cluster (bsc#1175228). - ocfs2: fix the application IO timeout when fstrim is running (bsc#1175228).

Exploit probability Not scored
Published September 9, 2020
Required by Not available
Last source change February 4, 2026

02 / AFFECTED SOFTWARE

Affected packages

SUSE:Enterprise Storage 5 kernel-default
SUSE:Enterprise Storage 5 kernel-source
SUSE:Enterprise Storage 5 kernel-syms
SUSE:Enterprise Storage 5 kgraft-patch-SLE12-SP3_Update_35
SUSE:HPE Helion OpenStack 8 kernel-default
SUSE:HPE Helion OpenStack 8 kernel-source
SUSE:HPE Helion OpenStack 8 kernel-syms
SUSE:HPE Helion OpenStack 8 kgraft-patch-SLE12-SP3_Update_35
SUSE:Linux Enterprise High Availability Extension 12 SP3 kernel-default
SUSE:Linux Enterprise Server 12 SP3-BCL kernel-default
SUSE:Linux Enterprise Server 12 SP3-BCL kernel-source
SUSE:Linux Enterprise Server 12 SP3-BCL kernel-syms
SUSE:Linux Enterprise Server 12 SP3-LTSS kernel-default
SUSE:Linux Enterprise Server 12 SP3-LTSS kernel-source
SUSE:Linux Enterprise Server 12 SP3-LTSS kernel-syms
SUSE:Linux Enterprise Server 12 SP3-LTSS kgraft-patch-SLE12-SP3_Update_35
SUSE:Linux Enterprise Server for SAP Applications 12 SP3 kernel-default
SUSE:Linux Enterprise Server for SAP Applications 12 SP3 kernel-source
SUSE:Linux Enterprise Server for SAP Applications 12 SP3 kernel-syms
SUSE:Linux Enterprise Server for SAP Applications 12 SP3 kgraft-patch-SLE12-SP3_Update_35
SUSE:OpenStack Cloud 8 kernel-default
SUSE:OpenStack Cloud 8 kernel-source
SUSE:OpenStack Cloud 8 kernel-syms
SUSE:OpenStack Cloud 8 kgraft-patch-SLE12-SP3_Update_35
SUSE:OpenStack Cloud Crowbar 8 kernel-default
SUSE:OpenStack Cloud Crowbar 8 kernel-source
SUSE:OpenStack Cloud Crowbar 8 kernel-syms
SUSE:OpenStack Cloud Crowbar 8 kgraft-patch-SLE12-SP3_Update_35

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities SUSE-SU-2020:2582-1

The SUSE Linux Enterprise 12 SP3 kernel was updated to receive various security and bugfixes. The following security bugs were fixed: - CVE-2020-14314: Fixed a potential negative array index in do_split() (bsc#1173798). - CVE-2020-14331: Fixed a missing check in vgacon scrollback handling (bsc#1174205). - CVE-2020-16166: Fixed a potential issue which could have allowed remote attackers to make observations that help to obtain sensitive information about the internal state of the network RNG (bsc#1174757). - CVE-2019-16746: Fixed an improper check of the length of variable elements in a beacon head, leading to a buffer overflow (bsc#1152107). - CVE-2020-14386: Fixed a potential local privilege escalation via memory corruption (bsc#1176069). The following non-security bugs were fixed: - bonding: fix active-backup failover for current ARP slave (bsc#1174771). - Drivers: hv: vmbus: Only notify Hyper-V for die events that are oops (bsc#1175127). - ibmvnic: Fix IRQ mapping disposal in error path (bsc#1175112 ltc#187459). - mm, vmstat: reduce zone->lock holding time by /proc/pagetypeinfo (bsc#1175691). - ocfs2: add trimfs dlm lock resource (bsc#1175228). - ocfs2: add trimfs lock to avoid duplicated trims in cluster (bsc#1175228). - ocfs2: fix the application IO timeout when fstrim is running (bsc#1175228).

View original source

05 / REFERENCES

Further evidence