RHSA-2020:1016
Vulnerability Summary
Timeline
Description
Red Hat Security Advisory: kernel security, bug fix, and enhancement update
CVSS Metrics
- v3.1•HIGH•Score: 8.4CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected Systems
- redhat•bpftool
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
- redhat•bpftool-debuginfo
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
- redhat•kernel
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
- redhat•kernel-abi-whitelists
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
- redhat•kernel-bootwrapper
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
- redhat•kernel-debug
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
- redhat•kernel-debug-debuginfo
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
- redhat•kernel-debug-devel
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
- redhat•kernel-debuginfo
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
- redhat•kernel-debuginfo-common-ppc64
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
- redhat•kernel-debuginfo-common-ppc64le
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
- redhat•kernel-debuginfo-common-s390x
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
- redhat•kernel-debuginfo-common-x86_64
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
- redhat•kernel-devel
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
- redhat•kernel-doc
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
- redhat•kernel-headers
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
- redhat•kernel-kdump
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
- redhat•kernel-kdump-debuginfo
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
- redhat•kernel-kdump-devel
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
- redhat•kernel-tools
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
- redhat•kernel-tools-debuginfo
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
- redhat•kernel-tools-libs
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
- redhat•kernel-tools-libs-devel
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
- redhat•perf
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
- redhat•perf-debuginfo
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
- redhat•python-perf
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
- redhat•python-perf-debuginfo
< 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7 | < 0:3.10.0-1127.el7
References (127)
- https://access.redhat.com/errata/RHSA-2020:1016
- https://access.redhat.com/security/updates/classification/#moderate
- https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/7/html/7.8_release_notes/index
- https://bugzilla.redhat.com/show_bug.cgi?id=1507149
- https://bugzilla.redhat.com/show_bug.cgi?id=1528335
- https://bugzilla.redhat.com/show_bug.cgi?id=1651706
- https://bugzilla.redhat.com/show_bug.cgi?id=1660385
- https://bugzilla.redhat.com/show_bug.cgi?id=1666106
- https://bugzilla.redhat.com/show_bug.cgi?id=1694201
- https://bugzilla.redhat.com/show_bug.cgi?id=1699856
- https://bugzilla.redhat.com/show_bug.cgi?id=1701245
- https://bugzilla.redhat.com/show_bug.cgi?id=1701842
- https://bugzilla.redhat.com/show_bug.cgi?id=1702264
- https://bugzilla.redhat.com/show_bug.cgi?id=1709837
- https://bugzilla.redhat.com/show_bug.cgi?id=1710751
- https://bugzilla.redhat.com/show_bug.cgi?id=1711520
- https://bugzilla.redhat.com/show_bug.cgi?id=1715554
- https://bugzilla.redhat.com/show_bug.cgi?id=1716328
- https://bugzilla.redhat.com/show_bug.cgi?id=1722706
- https://bugzilla.redhat.com/show_bug.cgi?id=1727756
- https://bugzilla.redhat.com/show_bug.cgi?id=1729931
- https://bugzilla.redhat.com/show_bug.cgi?id=1729933
- https://bugzilla.redhat.com/show_bug.cgi?id=1733347
- https://bugzilla.redhat.com/show_bug.cgi?id=1733874
- https://bugzilla.redhat.com/show_bug.cgi?id=1734243
- https://bugzilla.redhat.com/show_bug.cgi?id=1735630
- https://bugzilla.redhat.com/show_bug.cgi?id=1735655
- https://bugzilla.redhat.com/show_bug.cgi?id=1749390
- https://bugzilla.redhat.com/show_bug.cgi?id=1750577
- https://bugzilla.redhat.com/show_bug.cgi?id=1750813
- https://bugzilla.redhat.com/show_bug.cgi?id=1757325
- https://bugzilla.redhat.com/show_bug.cgi?id=1757872
- https://bugzilla.redhat.com/show_bug.cgi?id=1758001
- https://bugzilla.redhat.com/show_bug.cgi?id=1760294
- https://bugzilla.redhat.com/show_bug.cgi?id=1760306
- https://bugzilla.redhat.com/show_bug.cgi?id=1770404
- https://bugzilla.redhat.com/show_bug.cgi?id=1777825
- https://security.access.redhat.com/data/csaf/v2/advisories/2020/rhsa-2020_1016.json
- https://access.redhat.com/security/cve/CVE-2015-9289
- https://www.cve.org/CVERecord?id=CVE-2015-9289
- https://nvd.nist.gov/vuln/detail/CVE-2015-9289
- https://access.redhat.com/security/cve/CVE-2017-17807
- https://www.cve.org/CVERecord?id=CVE-2017-17807
- https://nvd.nist.gov/vuln/detail/CVE-2017-17807
- https://access.redhat.com/security/cve/CVE-2018-7191
- https://www.cve.org/CVERecord?id=CVE-2018-7191
- https://nvd.nist.gov/vuln/detail/CVE-2018-7191
- https://access.redhat.com/security/cve/CVE-2018-19985
- https://www.cve.org/CVERecord?id=CVE-2018-19985
- https://nvd.nist.gov/vuln/detail/CVE-2018-19985
- https://access.redhat.com/security/cve/CVE-2018-20169
- https://www.cve.org/CVERecord?id=CVE-2018-20169
- https://nvd.nist.gov/vuln/detail/CVE-2018-20169
- https://access.redhat.com/security/cve/CVE-2019-3901
- https://www.cve.org/CVERecord?id=CVE-2019-3901
- https://nvd.nist.gov/vuln/detail/CVE-2019-3901
- https://access.redhat.com/security/cve/CVE-2019-5108
- https://bugzilla.redhat.com/show_bug.cgi?id=1789927
- https://www.cve.org/CVERecord?id=CVE-2019-5108
- https://nvd.nist.gov/vuln/detail/CVE-2019-5108
- https://access.redhat.com/security/cve/CVE-2019-9503
- https://www.cve.org/CVERecord?id=CVE-2019-9503
- https://nvd.nist.gov/vuln/detail/CVE-2019-9503
- https://blog.quarkslab.com/reverse-engineering-broadcom-wireless-chipsets.html#cve-2019-9503-remotely-sending-firmware-events-bypassing-is-wlc-event-frame
- https://kb.cert.org/vuls/id/166939/
- https://www.bleepingcomputer.com/news/security/broadcom-wifi-driver-flaws-expose-computers-phones-iot-to-rce-attacks/
- https://access.redhat.com/security/cve/CVE-2019-10207
- https://www.cve.org/CVERecord?id=CVE-2019-10207
- https://nvd.nist.gov/vuln/detail/CVE-2019-10207
- https://access.redhat.com/security/cve/CVE-2019-10638
- https://www.cve.org/CVERecord?id=CVE-2019-10638
- https://nvd.nist.gov/vuln/detail/CVE-2019-10638
- https://arxiv.org/pdf/1906.10478.pdf
- https://access.redhat.com/security/cve/CVE-2019-10639
- https://www.cve.org/CVERecord?id=CVE-2019-10639
- https://nvd.nist.gov/vuln/detail/CVE-2019-10639
- https://access.redhat.com/security/cve/CVE-2019-11190
- https://www.cve.org/CVERecord?id=CVE-2019-11190
- https://nvd.nist.gov/vuln/detail/CVE-2019-11190
- https://access.redhat.com/security/cve/CVE-2019-11884
- https://www.cve.org/CVERecord?id=CVE-2019-11884
- https://nvd.nist.gov/vuln/detail/CVE-2019-11884
- https://access.redhat.com/security/cve/CVE-2019-12382
- https://www.cve.org/CVERecord?id=CVE-2019-12382
- https://nvd.nist.gov/vuln/detail/CVE-2019-12382
- https://access.redhat.com/security/cve/CVE-2019-13233
- https://www.cve.org/CVERecord?id=CVE-2019-13233
- https://nvd.nist.gov/vuln/detail/CVE-2019-13233
- https://access.redhat.com/security/cve/CVE-2019-13648
- https://www.cve.org/CVERecord?id=CVE-2019-13648
- https://nvd.nist.gov/vuln/detail/CVE-2019-13648
- https://access.redhat.com/security/cve/CVE-2019-14283
- https://www.cve.org/CVERecord?id=CVE-2019-14283
- https://nvd.nist.gov/vuln/detail/CVE-2019-14283
- https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.2.3
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=da99466ac243f15fbba65bd261bfc75ffa1532b6
- https://github.com/torvalds/linux/commit/da99466ac243f15fbba65bd261bfc75ffa1532b6
- https://access.redhat.com/security/cve/CVE-2019-14814
- https://bugzilla.redhat.com/show_bug.cgi?id=1744130
- https://www.cve.org/CVERecord?id=CVE-2019-14814
- https://nvd.nist.gov/vuln/detail/CVE-2019-14814
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=7caac62ed598a196d6ddf8d9c121e12e082cac3a
- https://access.redhat.com/security/cve/CVE-2019-14815
- https://bugzilla.redhat.com/show_bug.cgi?id=1744137
- https://www.cve.org/CVERecord?id=CVE-2019-14815
- https://nvd.nist.gov/vuln/detail/CVE-2019-14815
- https://access.redhat.com/security/cve/CVE-2019-15090
- https://bugzilla.redhat.com/show_bug.cgi?id=1743526
- https://www.cve.org/CVERecord?id=CVE-2019-15090
- https://nvd.nist.gov/vuln/detail/CVE-2019-15090
- https://access.redhat.com/security/cve/CVE-2019-15214
- https://bugzilla.redhat.com/show_bug.cgi?id=1743591
- https://www.cve.org/CVERecord?id=CVE-2019-15214
- https://nvd.nist.gov/vuln/detail/CVE-2019-15214
- https://access.redhat.com/security/cve/CVE-2019-15221
- https://bugzilla.redhat.com/show_bug.cgi?id=1749974
- https://www.cve.org/CVERecord?id=CVE-2019-15221
- https://nvd.nist.gov/vuln/detail/CVE-2019-15221
- https://access.redhat.com/security/cve/CVE-2019-15916
- https://www.cve.org/CVERecord?id=CVE-2019-15916
- https://nvd.nist.gov/vuln/detail/CVE-2019-15916
- https://access.redhat.com/security/cve/CVE-2019-16746
- https://www.cve.org/CVERecord?id=CVE-2019-16746
- https://nvd.nist.gov/vuln/detail/CVE-2019-16746
- https://access.redhat.com/security/cve/CVE-2019-18660
- https://www.cve.org/CVERecord?id=CVE-2019-18660
- https://nvd.nist.gov/vuln/detail/CVE-2019-18660