SUSE SLED15 / SLES15 Security Update : kernel (SUSE-SU-2019:2071-1)

medium Nessus Plugin ID 127774

Language:

Synopsis

The remote SUSE host is missing one or more security updates.

Description

The SUSE Linux Enterprise 15 kernel was updated to receive various security and bugfixes.

The following security bugs were fixed :

CVE-2018-20855: An issue was discovered in the Linux kernel In create_qp_common in drivers/infiniband/hw/mlx5/qp.c, mlx5_ib_create_qp_resp was never initialized, resulting in a leak of stack memory to userspace(bsc#1143045).

CVE-2019-1125: Exclude ATOMs from speculation through SWAPGS (bsc#1139358).

CVE-2019-14283: In the Linux kernel, set_geometry in drivers/block/floppy.c did not validate the sect and head fields, as demonstrated by an integer overflow and out-of-bounds read. It could be triggered by an unprivileged local user when a floppy disk was inserted. NOTE: QEMU creates the floppy device by default.
(bnc#1143191)

CVE-2019-11810: An issue was discovered in the Linux kernel A NULL pointer dereference could occur when megasas_create_frame_pool() failed in megasas_alloc_cmds() in drivers/scsi/megaraid/megaraid_sas_base.c. This caused a Denial of Service, related to a use-after-free (bnc#1134399).

CVE-2019-13648: In the Linux kernel on the powerpc platform, when hardware transactional memory was disabled, a local user could cause a denial of service (TM Bad Thing exception and system crash) via a sigreturn() system call that sent a crafted signal frame.
(bnc#1142254)

CVE-2019-13631: In parse_hid_report_descriptor in drivers/input/tablet/gtco.c in the Linux kernel, a malicious USB device could send an HID report that triggered an out-of-bounds write during generation of debugging messages. (bnc#1142023)

The update package also includes non-security fixes. See advisory for details.

Note that Tenable Network Security has extracted the preceding description block directly from the SUSE security advisory. Tenable has attempted to automatically clean and format it as much as possible without introducing additional issues.

Solution

To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or 'zypper patch'.

Alternatively you can run the command listed for your product :

SUSE Linux Enterprise Workstation Extension 15:zypper in -t patch SUSE-SLE-Product-WE-15-2019-2071=1

SUSE Linux Enterprise Module for Open Buildservice Development Tools 15:zypper in -t patch SUSE-SLE-Module-Development-Tools-OBS-15-2019-2071=1

SUSE Linux Enterprise Module for Live Patching 15:zypper in -t patch SUSE-SLE-Module-Live-Patching-15-2019-2071=1

SUSE Linux Enterprise Module for Legacy Software 15:zypper in -t patch SUSE-SLE-Module-Legacy-15-2019-2071=1

SUSE Linux Enterprise Module for Development Tools 15:zypper in -t patch SUSE-SLE-Module-Development-Tools-15-2019-2071=1

SUSE Linux Enterprise Module for Basesystem 15:zypper in -t patch SUSE-SLE-Module-Basesystem-15-2019-2071=1

SUSE Linux Enterprise High Availability 15:zypper in -t patch SUSE-SLE-Product-HA-15-2019-2071=1

See Also

https://bugzilla.suse.com/show_bug.cgi?id=1051510

https://bugzilla.suse.com/show_bug.cgi?id=1055117

https://bugzilla.suse.com/show_bug.cgi?id=1071995

https://bugzilla.suse.com/show_bug.cgi?id=1083647

https://bugzilla.suse.com/show_bug.cgi?id=1083710

https://bugzilla.suse.com/show_bug.cgi?id=1102247

https://bugzilla.suse.com/show_bug.cgi?id=1119222

https://bugzilla.suse.com/show_bug.cgi?id=1123080

https://bugzilla.suse.com/show_bug.cgi?id=1127034

https://bugzilla.suse.com/show_bug.cgi?id=1127315

https://bugzilla.suse.com/show_bug.cgi?id=1129770

https://bugzilla.suse.com/show_bug.cgi?id=1130972

https://bugzilla.suse.com/show_bug.cgi?id=1133021

https://bugzilla.suse.com/show_bug.cgi?id=1134097

https://bugzilla.suse.com/show_bug.cgi?id=1134390

https://bugzilla.suse.com/show_bug.cgi?id=1134399

https://bugzilla.suse.com/show_bug.cgi?id=1135335

https://bugzilla.suse.com/show_bug.cgi?id=1135642

https://bugzilla.suse.com/show_bug.cgi?id=1137458

https://bugzilla.suse.com/show_bug.cgi?id=1137534

https://bugzilla.suse.com/show_bug.cgi?id=1137535

https://bugzilla.suse.com/show_bug.cgi?id=1137584

https://bugzilla.suse.com/show_bug.cgi?id=1137609

https://bugzilla.suse.com/show_bug.cgi?id=1137827

https://bugzilla.suse.com/show_bug.cgi?id=1139358

https://bugzilla.suse.com/show_bug.cgi?id=1140133

https://bugzilla.suse.com/show_bug.cgi?id=1140322

https://bugzilla.suse.com/show_bug.cgi?id=1140652

https://bugzilla.suse.com/show_bug.cgi?id=1140903

https://bugzilla.suse.com/show_bug.cgi?id=1140945

https://bugzilla.suse.com/show_bug.cgi?id=1141401

https://bugzilla.suse.com/show_bug.cgi?id=1141402

https://bugzilla.suse.com/show_bug.cgi?id=1141452

https://bugzilla.suse.com/show_bug.cgi?id=1141453

https://bugzilla.suse.com/show_bug.cgi?id=1141454

https://bugzilla.suse.com/show_bug.cgi?id=1141478

https://bugzilla.suse.com/show_bug.cgi?id=1142023

https://bugzilla.suse.com/show_bug.cgi?id=1142112

https://bugzilla.suse.com/show_bug.cgi?id=1142220

https://bugzilla.suse.com/show_bug.cgi?id=1142221

https://bugzilla.suse.com/show_bug.cgi?id=1142254

https://bugzilla.suse.com/show_bug.cgi?id=1142350

https://bugzilla.suse.com/show_bug.cgi?id=1142351

https://bugzilla.suse.com/show_bug.cgi?id=1142354

https://bugzilla.suse.com/show_bug.cgi?id=1142359

https://bugzilla.suse.com/show_bug.cgi?id=1142450

https://bugzilla.suse.com/show_bug.cgi?id=1142701

https://bugzilla.suse.com/show_bug.cgi?id=1142868

https://bugzilla.suse.com/show_bug.cgi?id=1143003

https://bugzilla.suse.com/show_bug.cgi?id=1143045

https://bugzilla.suse.com/show_bug.cgi?id=1143105

https://bugzilla.suse.com/show_bug.cgi?id=1143185

https://bugzilla.suse.com/show_bug.cgi?id=1143189

https://bugzilla.suse.com/show_bug.cgi?id=1143191

https://bugzilla.suse.com/show_bug.cgi?id=1143507

https://www.suse.com/security/cve/CVE-2018-20855/

https://www.suse.com/security/cve/CVE-2019-1125/

https://www.suse.com/security/cve/CVE-2019-11810/

https://www.suse.com/security/cve/CVE-2019-13631/

https://www.suse.com/security/cve/CVE-2019-13648/

https://www.suse.com/security/cve/CVE-2019-14283/

https://www.suse.com/security/cve/CVE-2019-14284/

http://www.nessus.org/u?49104dda

Plugin Details

Severity: Medium

ID: 127774

File Name: suse_SU-2019-2071-1.nasl

Version: 1.5

Type: local

Agent: unix

Published: 8/12/2019

Updated: 1/13/2021

Supported Sensors: Agentless Assessment, Continuous Assessment, Frictionless Assessment Agent, Frictionless Assessment AWS, Frictionless Assessment Azure, Nessus Agent, Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 5.9

CVSS v2

Risk Factor: Medium

Base Score: 4.6

Temporal Score: 3.6

Vector: CVSS2#AV:L/AC:L/Au:N/C:P/I:P/A:P

CVSS Score Source: CVE-2019-14283

CVSS v3

Risk Factor: Medium

Base Score: 6.8

Temporal Score: 6.1

Vector: CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:P/RL:O/RC:C

Vulnerability Information

CPE: p-cpe:/a:novell:suse_linux:reiserfs-kmp-default-debuginfo, p-cpe:/a:novell:suse_linux:kernel-default-devel-debuginfo, p-cpe:/a:novell:suse_linux:kernel-zfcpdump, p-cpe:/a:novell:suse_linux:kernel-default-base-debuginfo, p-cpe:/a:novell:suse_linux:kernel-vanilla-debugsource, p-cpe:/a:novell:suse_linux:kernel-vanilla-base-debuginfo, p-cpe:/a:novell:suse_linux:kernel-zfcpdump-debugsource, p-cpe:/a:novell:suse_linux:kernel-vanilla-debuginfo, p-cpe:/a:novell:suse_linux:kernel-default-man, p-cpe:/a:novell:suse_linux:kernel-default-debuginfo, p-cpe:/a:novell:suse_linux:kernel-default-base, p-cpe:/a:novell:suse_linux:kselftests-kmp-default, p-cpe:/a:novell:suse_linux:kernel-vanilla-base, p-cpe:/a:novell:suse_linux:kernel-default-debugsource, p-cpe:/a:novell:suse_linux:kselftests-kmp-default-debuginfo, p-cpe:/a:novell:suse_linux:kernel-default-devel, p-cpe:/a:novell:suse_linux:kernel-syms, cpe:/o:novell:suse_linux:15, p-cpe:/a:novell:suse_linux:kernel-obs-qa, p-cpe:/a:novell:suse_linux:kernel-zfcpdump-debuginfo, p-cpe:/a:novell:suse_linux:kernel-obs-build, p-cpe:/a:novell:suse_linux:kernel-obs-build-debugsource, p-cpe:/a:novell:suse_linux:kernel-default, p-cpe:/a:novell:suse_linux:reiserfs-kmp-default

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 8/6/2019

Vulnerability Publication Date: 5/7/2019

Reference Information

CVE: CVE-2018-20855, CVE-2019-1125, CVE-2019-11810, CVE-2019-13631, CVE-2019-13648, CVE-2019-14283, CVE-2019-14284