Mageia 2019-0097: kernel security update
Summary
This kernel update is based on the upstream 4.14.100 and fixes atleast
the following security issues:
A use-after-free issue was found in the way the Linux kernel's KVM
hypervisor processed posted interrupts when nested(=1) virtualization is
enabled. In nested_get_vmcs12_pages(), in case of an error while
processing posted interrupt address, it unmaps the 'pi_desc_page' without
resetting 'pi_desc' descriptor address, which is later used in
pi_test_and_clear_on(). A guest user/process could use this flaw to crash
the host kernel resulting in DoS or potentially gain privileged access to
a system (CVE-2018-16882).
A flaw was found in the Linux kernel's NFS41+ subsystem. NFS41+ shares
mounted in different network namespaces at the same time can make
bc_svc_process() use wrong back-channel IDs and cause a use-after-free
vulnerability. Thus a malicious container user can cause a host kernel
memory corruption and a system panic. Due to the nature of the flaw,
privilege escalation cannot be...
References
- https://bugs.mageia.org/show_bug.cgi?id=24331
- https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.90
- https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.91
- https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.92
- https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.93
- https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.94
- https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.95
- https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.96
- https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.97
- https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.98
- https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.99
- https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.100
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16882
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16884
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-19985
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-3701
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-3819
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-6974
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-7221
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-7222
Resolution
MGASA-2019-0097 - Updated kernel packages fix security vulnerabilities
SRPMS
- 6/core/kernel-4.14.100-1.mga6
- 6/core/kernel-userspace-headers-4.14.100-1.mga6
- 6/core/kmod-vboxadditions-5.2.24-4.mga6
- 6/core/kmod-virtualbox-5.2.24-4.mga6
- 6/core/kmod-xtables-addons-2.13-78.mga6
- 6/core/ndiswrapper-1.62-1.mga6
- 6/core/wireguard-tools-0.0.20190123-1.mga6