RHSA-2020:2854: Important: kernel-alt security and bug fix update

Published Jul 7, 2020
·
Updated

The kernel-alt packages provide the Linux kernel version 4.x.Security Fix(es): kernel: nfs: use-after-free in svcprocesscommon() (CVE-2018-16884) Kernel: ppc: kvm: conflicting use of HSTATEHOSTR1 to store r1 state leads to host stack corruption (CVE-2020-8834) Kernel: vfio: access to disabled MMIO space of some devices may lead to DoS scenario (CVE-2020-12888) kernel: use after free due to race condition in the video driver leads to local privilege escalation (CVE-2019-9458) kernel: use-after-free in drivers/char/ipmi/ipmisiintf.c, ipmisimemio.c, ipmisiportio.c (CVE-2019-11811) kernel: use-after-free in drivers/bluetooth/hcildisc.c (CVE-2019-15917) kernel: memory leak in ccprunshacmd() function in drivers/crypto/ccp/ccp-ops.c (CVE-2019-18808) kernel: use-after-free in ext4expandextraisize and ext4xattrsetentry related to fs/ext4/inode.c and fs/ext4/super.c (CVE-2019-19767) kernel: an out-of-bounds write via crafted keycode table (CVE-2019-20636) kernel: use-after-free read in napigrofrags() in the Linux kernel (CVE-2020-10720) kernel: out-of-bounds write in mpolparsestr function in mm/mempolicy.c (CVE-2020-11565) kernel: A memory leak in the cryptoreport() function in crypto/cryptouserbase.c allows for a DoS (CVE-2019-19062) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Bug Fix(es): XFS: Metadata corruption detected at xfsattr3leafreadverify [rhel-alt-7.6.z] (BZ#1830836)

Affected Software

51 affected componentsFixes available
redhat/kernel-alt<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/kernel-abi-whitelists<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-debug<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/kernel-debug-debuginfo<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/kernel-debug-devel<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/kernel-debuginfo<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/kernel-debuginfo-common-aarch64<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/kernel-devel<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/kernel-doc<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-headers<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/kernel-tools<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/kernel-tools-debuginfo<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/kernel-tools-libs<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/kernel-tools-libs-devel<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/perf<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/perf-debuginfo<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/python-perf<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/python-perf-debuginfo<4.14.0-115.26.1.el7a.aa
4.14.0-115.26.1.el7a.aa
redhat/kernel<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-bootwrapper<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-debug<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-debug-debuginfo<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-debug-devel<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-debuginfo<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-debuginfo-common-ppc64le<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-devel<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-headers<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-tools<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-tools-debuginfo<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-tools-libs<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-tools-libs-devel<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/perf<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/perf-debuginfo<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/python-perf<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/python-perf-debuginfo<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-debug<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-debug-debuginfo<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-debug-devel<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-debuginfo<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-debuginfo-common-s390x<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-devel<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-headers<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-kdump<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-kdump-debuginfo<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/kernel-kdump-devel<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/perf<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/perf-debuginfo<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/python-perf<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a
redhat/python-perf-debuginfo<4.14.0-115.26.1.el7a
4.14.0-115.26.1.el7a

Remediation

Event History

Feb 24, 2026
Advisory Published
via Red Hat·09:00 AM
Data Sourced
via Red Hat·09:00 AM
RemedyDescriptionAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of RHSA-2020:2854?

The severity of RHSA-2020:2854 is considered important due to the potential for denial of service or execution of arbitrary code.

2

How do I fix RHSA-2020:2854?

To fix RHSA-2020:2854, update your system to the kernel packages version 4.14.0-115.26.1.el7a or later.

3

What vulnerabilities are addressed in RHSA-2020:2854?

RHSA-2020:2854 addresses vulnerabilities including CVE-2018-16884, which is a use-after-free issue in nfs.

4

What systems are affected by RHSA-2020:2854?

Systems using the kernel-alt packages version prior to 4.14.0-115.26.1.el7a are affected by RHSA-2020:2854.

5

Is there a workaround for RHSA-2020:2854?

While it's recommended to apply the updates, there are no specific workarounds for RHSA-2020:2854.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203