Oracle Linux 7 : kernel (ELSA-2020-3220) (deprecated)

medium Nessus Plugin ID 139219
This plugin has been deprecated.


From Red Hat Security Advisory 2020:3220 :

The remote Redhat Enterprise Linux 7 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2020:3220 advisory.

- kernel: use-after-free caused by a malicious USB device in the drivers/hid/usbhid/hiddev.c driver (CVE-2019-19527)

- kernel: kernel: DAX hugepages not considered during mremap (CVE-2020-10757)

- kernel: buffer overflow in mwifiex_cmd_append_vsie_tlv function in drivers/net/wireless/marvell/mwifiex/scan.c (CVE-2020-12653)

- kernel: heap-based buffer overflow in mwifiex_ret_wmm_get_status function in drivers/net/wireless/marvell/mwifiex/wmm.c (CVE-2020-12654)

As of 2020/10/12 this advisory has been retracted because it apparently does not fix any security problems relevant to already running systems.



