SUSE SLED15 / SLES15 Security Update : kernel (SUSE-SU-2019:2073-1)

Medium Nessus Plugin ID 127776

Synopsis

The remote SUSE host is missing one or more security updates.

Description

The SUSE Linux Enterprise 15 SP1 kernel was updated to receive various security and bugfixes.

The following security bugs were fixed :

CVE-2018-20855: An issue was discovered in the Linux kernel In create_qp_common in drivers/infiniband/hw/mlx5/qp.c, mlx5_ib_create_qp_resp was never initialized, resulting in a leak of stack memory to userspace(bsc#1143045).

CVE-2019-1125: Exclude ATOMs from speculation through SWAPGS (bsc#1139358).

CVE-2019-14283: In the Linux kernel, set_geometry in drivers/block/floppy.c did not validate the sect and head fields, as demonstrated by an integer overflow and out-of-bounds read. It could be triggered by an unprivileged local user when a floppy disk was inserted. NOTE: QEMU creates the floppy device by default.
(bnc#1143191)

CVE-2019-11810: An issue was discovered in the Linux kernel A NULL pointer dereference could occur when megasas_create_frame_pool() failed in megasas_alloc_cmds() in drivers/scsi/megaraid/megaraid_sas_base.c. This caused a Denial of Service, related to a use-after-free (bnc#1134399).

CVE-2019-13648: In the Linux kernel on the powerpc platform, when hardware transactional memory was disabled, a local user could cause a denial of service (TM Bad Thing exception and system crash) via a sigreturn() system call that sent a crafted signal frame.
(bnc#1142254)

CVE-2019-13631: In parse_hid_report_descriptor in drivers/input/tablet/gtco.c in the Linux kernel, a malicious USB device could send an HID report that triggered an out-of-bounds write during generation of debugging messages. (bnc#1142023)

The update package also includes non-security fixes. See advisory for details.

Note that Tenable Network Security has extracted the preceding description block directly from the SUSE security advisory. Tenable has attempted to automatically clean and format it as much as possible without introducing additional issues.

Solution

To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or 'zypper patch'.

Alternatively you can run the command listed for your product :

SUSE Linux Enterprise Workstation Extension 15-SP1:zypper in -t patch SUSE-SLE-Product-WE-15-SP1-2019-2073=1

SUSE Linux Enterprise Module for Open Buildservice Development Tools 15-SP1:zypper in -t patch SUSE-SLE-Module-Development-Tools-OBS-15-SP1-2019-2073=1

SUSE Linux Enterprise Module for Live Patching 15-SP1:zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP1-2019-2073=1

SUSE Linux Enterprise Module for Legacy Software 15-SP1:zypper in -t patch SUSE-SLE-Module-Legacy-15-SP1-2019-2073=1

SUSE Linux Enterprise Module for Development Tools 15-SP1:zypper in -t patch SUSE-SLE-Module-Development-Tools-15-SP1-2019-2073=1

SUSE Linux Enterprise Module for Basesystem 15-SP1:zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP1-2019-2073=1

SUSE Linux Enterprise High Availability 15-SP1:zypper in -t patch SUSE-SLE-Product-HA-15-SP1-2019-2073=1

See Also

https://bugzilla.suse.com/show_bug.cgi?id=1051510

https://bugzilla.suse.com/show_bug.cgi?id=1055117

https://bugzilla.suse.com/show_bug.cgi?id=1071995

https://bugzilla.suse.com/show_bug.cgi?id=1083647

https://bugzilla.suse.com/show_bug.cgi?id=1083710

https://bugzilla.suse.com/show_bug.cgi?id=1102247

https://bugzilla.suse.com/show_bug.cgi?id=1103991

https://bugzilla.suse.com/show_bug.cgi?id=1103992

https://bugzilla.suse.com/show_bug.cgi?id=1104745

https://bugzilla.suse.com/show_bug.cgi?id=1109837

https://bugzilla.suse.com/show_bug.cgi?id=1111666

https://bugzilla.suse.com/show_bug.cgi?id=1112374

https://bugzilla.suse.com/show_bug.cgi?id=1119222

https://bugzilla.suse.com/show_bug.cgi?id=1123080

https://bugzilla.suse.com/show_bug.cgi?id=1127034

https://bugzilla.suse.com/show_bug.cgi?id=1127315

https://bugzilla.suse.com/show_bug.cgi?id=1127611

https://bugzilla.suse.com/show_bug.cgi?id=1129770

https://bugzilla.suse.com/show_bug.cgi?id=1130972

https://bugzilla.suse.com/show_bug.cgi?id=1133021

https://bugzilla.suse.com/show_bug.cgi?id=1134090

https://bugzilla.suse.com/show_bug.cgi?id=1134097

https://bugzilla.suse.com/show_bug.cgi?id=1134390

https://bugzilla.suse.com/show_bug.cgi?id=1134399

https://bugzilla.suse.com/show_bug.cgi?id=1135335

https://bugzilla.suse.com/show_bug.cgi?id=1135642

https://bugzilla.suse.com/show_bug.cgi?id=1136217

https://bugzilla.suse.com/show_bug.cgi?id=1136342

https://bugzilla.suse.com/show_bug.cgi?id=1136460

https://bugzilla.suse.com/show_bug.cgi?id=1136461

https://bugzilla.suse.com/show_bug.cgi?id=1136462

https://bugzilla.suse.com/show_bug.cgi?id=1136467

https://bugzilla.suse.com/show_bug.cgi?id=1137458

https://bugzilla.suse.com/show_bug.cgi?id=1137534

https://bugzilla.suse.com/show_bug.cgi?id=1137535

https://bugzilla.suse.com/show_bug.cgi?id=1137584

https://bugzilla.suse.com/show_bug.cgi?id=1137609

https://bugzilla.suse.com/show_bug.cgi?id=1137811

https://bugzilla.suse.com/show_bug.cgi?id=1137827

https://bugzilla.suse.com/show_bug.cgi?id=1138874

https://bugzilla.suse.com/show_bug.cgi?id=1139358

https://bugzilla.suse.com/show_bug.cgi?id=1139619

https://bugzilla.suse.com/show_bug.cgi?id=1140133

https://bugzilla.suse.com/show_bug.cgi?id=1140139

https://bugzilla.suse.com/show_bug.cgi?id=1140322

https://bugzilla.suse.com/show_bug.cgi?id=1140559

https://bugzilla.suse.com/show_bug.cgi?id=1140652

https://bugzilla.suse.com/show_bug.cgi?id=1140676

https://bugzilla.suse.com/show_bug.cgi?id=1140903

https://bugzilla.suse.com/show_bug.cgi?id=1140945

https://bugzilla.suse.com/show_bug.cgi?id=1140948

https://bugzilla.suse.com/show_bug.cgi?id=1141312

https://bugzilla.suse.com/show_bug.cgi?id=1141401

https://bugzilla.suse.com/show_bug.cgi?id=1141402

https://bugzilla.suse.com/show_bug.cgi?id=1141452

https://bugzilla.suse.com/show_bug.cgi?id=1141453

https://bugzilla.suse.com/show_bug.cgi?id=1141454

https://bugzilla.suse.com/show_bug.cgi?id=1141478

https://bugzilla.suse.com/show_bug.cgi?id=1141558

https://bugzilla.suse.com/show_bug.cgi?id=1142023

https://bugzilla.suse.com/show_bug.cgi?id=1142052

https://bugzilla.suse.com/show_bug.cgi?id=1142083

https://bugzilla.suse.com/show_bug.cgi?id=1142112

https://bugzilla.suse.com/show_bug.cgi?id=1142115

https://bugzilla.suse.com/show_bug.cgi?id=1142119

https://bugzilla.suse.com/show_bug.cgi?id=1142220

https://bugzilla.suse.com/show_bug.cgi?id=1142221

https://bugzilla.suse.com/show_bug.cgi?id=1142254

https://bugzilla.suse.com/show_bug.cgi?id=1142350

https://bugzilla.suse.com/show_bug.cgi?id=1142351

https://bugzilla.suse.com/show_bug.cgi?id=1142354

https://bugzilla.suse.com/show_bug.cgi?id=1142359

https://bugzilla.suse.com/show_bug.cgi?id=1142450

https://bugzilla.suse.com/show_bug.cgi?id=1142623

https://bugzilla.suse.com/show_bug.cgi?id=1142673

https://bugzilla.suse.com/show_bug.cgi?id=1142701

https://bugzilla.suse.com/show_bug.cgi?id=1142868

https://bugzilla.suse.com/show_bug.cgi?id=1143003

https://bugzilla.suse.com/show_bug.cgi?id=1143045

https://bugzilla.suse.com/show_bug.cgi?id=1143105

https://bugzilla.suse.com/show_bug.cgi?id=1143185

https://bugzilla.suse.com/show_bug.cgi?id=1143189

https://bugzilla.suse.com/show_bug.cgi?id=1143191

https://bugzilla.suse.com/show_bug.cgi?id=1143209

https://bugzilla.suse.com/show_bug.cgi?id=1143507

https://www.suse.com/security/cve/CVE-2018-20855/

https://www.suse.com/security/cve/CVE-2019-1125/

https://www.suse.com/security/cve/CVE-2019-11810/

https://www.suse.com/security/cve/CVE-2019-13631/

https://www.suse.com/security/cve/CVE-2019-13648/

https://www.suse.com/security/cve/CVE-2019-14283/

https://www.suse.com/security/cve/CVE-2019-14284/

http://www.nessus.org/u?c5521e7e

Plugin Details

Severity: Medium

ID: 127776

File Name: suse_SU-2019-2073-1.nasl

Version: 1.4

Type: local

Agent: unix

Published: 2019/08/12

Updated: 2020/02/18

Dependencies: 12634

Risk Information

Risk Factor: Medium

CVSS Score Source: CVE-2019-14283

CVSS v2.0

Base Score: 4.6

Temporal Score: 3.6

Vector: CVSS2#AV:L/AC:L/Au:N/C:P/I:P/A:P

Temporal Vector: CVSS2#E:POC/RL:OF/RC:C

CVSS v3.0

Base Score: 6.8

Temporal Score: 6.1

Vector: CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:P/RL:O/RC:C

Vulnerability Information

CPE: p-cpe:/a:novell:suse_linux:kernel-debug, p-cpe:/a:novell:suse_linux:kernel-debug-base, p-cpe:/a:novell:suse_linux:kernel-debug-base-debuginfo, p-cpe:/a:novell:suse_linux:kernel-debug-debuginfo, p-cpe:/a:novell:suse_linux:kernel-debug-debugsource, p-cpe:/a:novell:suse_linux:kernel-debug-devel, p-cpe:/a:novell:suse_linux:kernel-debug-devel-debuginfo, p-cpe:/a:novell:suse_linux:kernel-debug-livepatch-devel, p-cpe:/a:novell:suse_linux:kernel-default, p-cpe:/a:novell:suse_linux:kernel-default-base, p-cpe:/a:novell:suse_linux:kernel-default-base-debuginfo, p-cpe:/a:novell:suse_linux:kernel-default-debuginfo, p-cpe:/a:novell:suse_linux:kernel-default-debugsource, p-cpe:/a:novell:suse_linux:kernel-default-devel, p-cpe:/a:novell:suse_linux:kernel-default-devel-debuginfo, p-cpe:/a:novell:suse_linux:kernel-default-livepatch, p-cpe:/a:novell:suse_linux:kernel-default-man, p-cpe:/a:novell:suse_linux:kernel-kvmsmall, p-cpe:/a:novell:suse_linux:kernel-kvmsmall-base, p-cpe:/a:novell:suse_linux:kernel-kvmsmall-base-debuginfo, p-cpe:/a:novell:suse_linux:kernel-kvmsmall-debuginfo, p-cpe:/a:novell:suse_linux:kernel-kvmsmall-debugsource, p-cpe:/a:novell:suse_linux:kernel-kvmsmall-devel, p-cpe:/a:novell:suse_linux:kernel-kvmsmall-devel-debuginfo, p-cpe:/a:novell:suse_linux:kernel-kvmsmall-livepatch-devel, p-cpe:/a:novell:suse_linux:kernel-obs-build, p-cpe:/a:novell:suse_linux:kernel-obs-build-debugsource, p-cpe:/a:novell:suse_linux:kernel-obs-qa, p-cpe:/a:novell:suse_linux:kernel-syms, p-cpe:/a:novell:suse_linux:kernel-vanilla, p-cpe:/a:novell:suse_linux:kernel-vanilla-base, p-cpe:/a:novell:suse_linux:kernel-vanilla-base-debuginfo, p-cpe:/a:novell:suse_linux:kernel-vanilla-debuginfo, p-cpe:/a:novell:suse_linux:kernel-vanilla-debugsource, p-cpe:/a:novell:suse_linux:kernel-vanilla-devel, p-cpe:/a:novell:suse_linux:kernel-vanilla-devel-debuginfo, p-cpe:/a:novell:suse_linux:kernel-vanilla-livepatch-devel, p-cpe:/a:novell:suse_linux:kernel-zfcpdump, p-cpe:/a:novell:suse_linux:kernel-zfcpdump-debuginfo, p-cpe:/a:novell:suse_linux:kernel-zfcpdump-debugsource, p-cpe:/a:novell:suse_linux:kernel-zfcpdump-man, p-cpe:/a:novell:suse_linux:kselftests-kmp-default, p-cpe:/a:novell:suse_linux:kselftests-kmp-default-debuginfo, p-cpe:/a:novell:suse_linux:reiserfs-kmp-default, p-cpe:/a:novell:suse_linux:reiserfs-kmp-default-debuginfo, cpe:/o:novell:suse_linux:15

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 2019/08/06

Vulnerability Publication Date: 2019/05/07

Reference Information

CVE: CVE-2018-20855, CVE-2019-1125, CVE-2019-11810, CVE-2019-13631, CVE-2019-13648, CVE-2019-14283, CVE-2019-14284