RHSA-2020:0543: Important: kernel security, bug fix, and enhancement update
The kernel packages contain the Linux kernel, the core of any Linux operating system.Security Fix(es): kernel: Use-after-free in blkdrainqueue() function in block/blk-core.c (CVE-2018-20856) kernel: use-after-free in fs/xfs/xfssuper.c (CVE-2018-20976) kernel: insufficient input validation in kernel mode driver in Intel i915 graphics leads to privilege escalation (CVE-2019-11085) kernel: heap-based buffer overflow in mwifiexprocesscountryie() function in drivers/net/wireless/marvell/mwifiex/staioctl.c (CVE-2019-14895) kernel: buffer overflow in cfg80211mgdwextgiwessid in net/wireless/wext-sme.c (CVE-2019-17133) kernel: rtlp2pnoaie in drivers/net/wireless/realtek/rtlwifi/ps.c in the Linux kernel lacks a certain upper-bound check, leading to a buffer overflow (CVE-2019-17666) kernel: fix race condition between mmgetnotzero()/gettaskmm() and core dumping (CVE-2019-11599) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Bug Fix(es): [Hyper-V][RHEL7.6]Hyper-V guest waiting indefinitely for RCU callback when removing a mem cgroup (BZ#1783175) Enhancement(s): Selective backport: perf: Sync with upstream v4.16 (BZ#1782751)
Affected Software
Remediation
Event History
Frequently Asked Questions
What are the security fixes associated with RHSA-2020:0543?
RHSA-2020:0543 addresses use-after-free vulnerabilities in the Linux kernel, specifically CVE-2018-20856 and CVE-2018-20976.
What is the recommended action for users affected by RHSA-2020:0543?
Users should upgrade to the kernel version 3.10.0-862.48.1.el7 or later to mitigate the vulnerabilities indicated in RHSA-2020:0543.
Is there a specific severity rating for RHSA-2020:0543?
The severity rating for RHSA-2020:0543 is typically categorized as important due to the risk of exploitation of the vulnerabilities.
Which kernel packages are affected by RHSA-2020:0543?
Affected kernel packages include kernel, kernel-debug, kernel-devel, kernel-headers, and other related packages all up to version 3.10.0-862.48.1.el7.
How can I verify if my system is vulnerable to RHSA-2020:0543?
To check for vulnerability under RHSA-2020:0543, verify the installed kernel version and match it against the versions that have been patched.