RHSA-2020:2665: Important: kernel-rt security and bug fix update
The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.Security Fix(es): Kernel: vfio: access to disabled MMIO space of some devices may lead to DoS scenario (CVE-2020-12888) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Bug Fix(es): kernel: hw: provide reporting and microcode mitigation toggle for CVE-2020-0543 / Special Register Buffer Data Sampling (SRBDS) (BZ#1827198) kernel-rt: update to the latest RHEL7.8.z source tree (BZ#1844620)
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2020:2665?
The severity of RHSA-2020:2665 is classified as important.
How do I fix RHSA-2020:2665?
To fix RHSA-2020:2665, you need to update to the kernel-rt packages version 3.10.0-1127.13.1.rt56.1110.el7.
What vulnerabilities are addressed in RHSA-2020:2665?
RHSA-2020:2665 addresses CVE-2020-12888, which may lead to a denial of service scenario due to access to disabled MMIO space.
Which systems are affected by RHSA-2020:2665?
RHSA-2020:2665 affects systems running specific versions of the kernel-rt packages on Red Hat Enterprise Linux 7.
What is the main purpose of the kernel-rt packages affected by RHSA-2020:2665?
The kernel-rt packages provide a Real Time Linux Kernel to meet high determinism requirements in critical systems.