Mageia 2020-0140: kernel security update
Summary
This update is based on upstream 5.5.9 and fixes atleast the following
security vulnerabilities:
In the Linux kernel 5.4.0-rc2, there is a use-after-free (read) in the
__blk_add_trace function in kernel/trace/blktrace.c (which is used to
fill out a blk_io_trace structure and place it in a per-cpu sub-buffer)
(CVE-2019-19768).
There is a use-after-free vulnerability in the Linux kernel through 5.5.2
in the vc_do_resize function in drivers/tty/vt/vt.c (CVE-2020-8647).
There is a use-after-free vulnerability in the Linux kernel through 5.5.2
in the n_tty_receive_buf_common function in drivers/tty/n_tty.c
(CVE-2020-8648).
There is a use-after-free vulnerability in the Linux kernel through 5.5.2
in the vgacon_invert_region function in drivers/video/console/vgacon.c.
(CVE-2020-8649).
An issue was discovered in the Linux kernel through 5.5.6. set_fdc in
drivers/block/floppy.c leads to a wait_til_ready out-of-bounds read
because the FDC index is not checked for errors before assigning it,
...
References
- https://bugs.mageia.org/show_bug.cgi?id=26331
- https://bugs.mageia.org/show_bug.cgi?id=26178
- https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.5.7
- https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.5.8
- https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.5.9
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19768
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-8647
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-8648
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-8649
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-9383
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-9391
Resolution
MGASA-2020-0140 - Updated kernel packages fix security vulnerabilities
SRPMS
- 7/core/kernel-5.5.9-1.mga7
- 7/core/kmod-virtualbox-6.0.18-5.mga7
- 7/core/kmod-xtables-addons-3.8-5.mga7