ALT-PU-2019-1313-1
Package kernel-image-un-def updated to version 4.19.25-alt1 for branch sisyphus in task 222829.
Closed vulnerabilities
BDU:2019-00990
Уязвимость модуля SNMP NAT ядра операционной системы Linux, позволяющая нарушителю повысить свои привилегии или вызвать отказ в обслуживании
BDU:2019-02363
Уязвимость функции af_alg_release ядра операционной системы Linux, позволяющая нарушителю выполнить произвольный код в режиме ядра
Modified: 2024-11-21
CVE-2019-8912
In the Linux kernel through 4.20.11, af_alg_release() in crypto/af_alg.c neglects to set a NULL value for a certain structure member, which leads to a use-after-free in sockfs_setattr.
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-8912
- openSUSE-SU-2019:1193
- http://patchwork.ozlabs.org/patch/1042902/
- 107063
- RHSA-2020:0174
- USN-3930-1
- USN-3930-2
- USN-3931-1
- USN-3931-2
- openSUSE-SU-2019:1193
- USN-3931-2
- USN-3931-1
- USN-3930-2
- USN-3930-1
- RHSA-2020:0174
- 107063
- http://patchwork.ozlabs.org/patch/1042902/
Modified: 2024-11-21
CVE-2019-9162
In the Linux kernel before 4.20.12, net/ipv4/netfilter/nf_nat_snmp_basic_main.c in the SNMP NAT module has insufficient ASN.1 length checks (aka an array index error), making out-of-bounds read and write operations possible, leading to an OOPS or local privilege escalation. This affects snmp_version and snmp_helper.
- http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=c4c07b4d6fa1f11880eab8e076d3d060ef3f55fc
- 107159
- https://bugs.chromium.org/p/project-zero/issues/detail?id=1776
- https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.25
- https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.20.12
- https://github.com/torvalds/linux/commit/c4c07b4d6fa1f11880eab8e076d3d060ef3f55fc
- https://security.netapp.com/advisory/ntap-20190327-0002/
- https://support.f5.com/csp/article/K31864522
- USN-3930-1
- USN-3930-2
- 46477
- http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=c4c07b4d6fa1f11880eab8e076d3d060ef3f55fc
- 46477
- USN-3930-2
- USN-3930-1
- https://support.f5.com/csp/article/K31864522
- https://security.netapp.com/advisory/ntap-20190327-0002/
- https://github.com/torvalds/linux/commit/c4c07b4d6fa1f11880eab8e076d3d060ef3f55fc
- https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.20.12
- https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.25
- https://bugs.chromium.org/p/project-zero/issues/detail?id=1776
- 107159