RHSA-2020:1524: Important: kernel security update
The kernel packages contain the Linux kernel, the core of any Linux operating system.Security Fix(es): kernel: rtlp2pnoaie in drivers/net/wireless/realtek/rtlwifi/ps.c in the Linux kernel lacks a certain upper-bound check, leading to a buffer overflow (CVE-2019-17666) kernel: offset2lib allows for the stack guard page to be jumped over (CVE-2017-1000371) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2020:1524?
The severity of RHSA-2020:1524 is classified as important due to a buffer overflow vulnerability that could lead to potential exploitation.
How do I fix RHSA-2020:1524?
To fix RHSA-2020:1524, update to the kernel package version 2.6.32-754.29.1.el6 or later.
What systems are affected by RHSA-2020:1524?
RHSA-2020:1524 affects systems using specific kernel package versions including 2.6.32-754.29.1.el6 and earlier versions.
What is CVE-2019-17666 related to RHSA-2020:1524?
CVE-2019-17666 is a buffer overflow vulnerability in the rtl_p2p_noa_ie function of the Linux kernel that is addressed by RHSA-2020:1524.
Is there a workaround for RHSA-2020:1524?
There are no recommended workarounds for RHSA-2020:1524; patching is advised as the primary mitigation.