Security Vulnerability: BleedingTooth aka CVE-2020-12351, CVE-2020-12352, and CVE-2020-24490
This document (000019735) is provided subject to the disclaimer at the end of this document.
Environment
SUSE Linux Enterprise Server 15 Service Pack 1
SUSE Linux Enterprise Server 15
SUSE Linux Enterprise Server 12 Service Pack 5
SUSE Linux Enterprise Server 12 Service Pack 4
SUSE Linux Enterprise Server 12 Service Pack 3
SUSE Linux Enterprise Server 12 Service Pack 2
Situation
There are 3 separate issues listed :
- CVE-2020-24490 a.k.a. "BadVibes"
This issue only affected SUSE Linux Enterprise 15 SP2 and was fixed (without security tagging) with our September 2020 kernel updates already.
- CVE-2020-12351 a.k.a. "BadKarma"
This affects SUSE Linux Enterprise 12 SP4 and newer kernels.
- CVE-2020-12352 a.k.a. "BadChoice"
This issue affects SUSE Linux Enterprise 12 SP2 and newer kernels.
Resolution
Cause
Status
Additional Information
Disclaimer
This Support Knowledgebase provides a valuable tool for SUSE customers and parties interested in our products and solutions to acquire information, ideas and learn from one another. Materials are provided for informational, personal or non-commercial use within your organization and are presented "AS IS" WITHOUT WARRANTY OF ANY KIND.
- Document ID:000019735
- Creation Date: 15-Oct-2020
- Modified Date:15-Oct-2020
-
- SUSE Linux Enterprise Server
For questions or concerns with the SUSE Knowledgebase please contact: tidfeedback[at]suse.com