<!-- 
RSS generated by JIRA (9.4.14#940014-sha1:734e6822bbf0d45eff9af51f82432957f73aa32c) at Sat Feb 10 03:12:40 UTC 2024

It is possible to restrict the fields that are returned in this document by specifying the 'field' parameter in your request.
For example, to request only the issue key and summary append 'field=key&field=summary' to the URL of your request.
-->
<rss version="0.92" >
<channel>
    <title>Whamcloud Community JIRA</title>
    <link>https://jira.whamcloud.com</link>
    <description>This file is an XML representation of an issue</description>
    <language>en-us</language>    <build-info>
        <version>9.4.14</version>
        <build-number>940014</build-number>
        <build-date>05-12-2023</build-date>
    </build-info>


<item>
            <title>[LU-14774] kernel update [SLES15 SP2 5.3.18-24.67.3]</title>
                <link>https://jira.whamcloud.com/browse/LU-14774</link>
                <project id="10000" key="LU">Lustre</project>
                    <description>&lt;p&gt;   The SUSE Linux Enterprise 15 SP2 kernel was updated to receive various&lt;br/&gt;
   security and bugfixes.&lt;/p&gt;

&lt;p&gt;   The following security bugs were fixed:&lt;/p&gt;

&lt;ul class=&quot;alternate&quot; type=&quot;square&quot;&gt;
	&lt;li&gt;CVE-2021-33200: Enforcing incorrect limits for pointer arithmetic&lt;br/&gt;
     operations by the BPF verifier could be abused to perform out-of-bounds&lt;br/&gt;
     reads and writes in kernel memory (bsc#1186484).&lt;/li&gt;
	&lt;li&gt;CVE-2021-33034: Fixed a use-after-free when destroying an hci_chan. This&lt;br/&gt;
     could lead to writing an arbitrary values. (bsc#1186111)&lt;/li&gt;
	&lt;li&gt;CVE-2020-26139: Fixed a denial-of-service when an Access Point (AP)&lt;br/&gt;
     forwards EAPOL frames to other clients even though the sender has not&lt;br/&gt;
     yet successfully authenticated to the AP. (bnc#1186062)&lt;/li&gt;
	&lt;li&gt;CVE-2021-23134: A Use After Free vulnerability in nfc sockets allowed&lt;br/&gt;
     local attackers to elevate their privileges. (bnc#1186060)&lt;/li&gt;
	&lt;li&gt;CVE-2021-3491: Fixed a potential heap overflow in mem_rw(). This&lt;br/&gt;
     vulnerability is related to the PROVIDE_BUFFERS operation, which allowed&lt;br/&gt;
     the MAX_RW_COUNT limit to be bypassed (bsc#1185642).&lt;/li&gt;
	&lt;li&gt;CVE-2021-32399: Fixed a race condition when removing the HCI controller&lt;br/&gt;
     (bnc#1184611).&lt;/li&gt;
	&lt;li&gt;CVE-2020-24586: The 802.11 standard that underpins Wi-Fi Protected&lt;br/&gt;
     Access (WPA, WPA2, and WPA3) and Wired Equivalent Privacy (WEP) doesn&apos;t&lt;br/&gt;
     require that received fragments be cleared from memory after&lt;br/&gt;
     (re)connecting to a network. Under the right circumstances this can be&lt;br/&gt;
     abused to inject arbitrary network packets and/or exfiltrate user data&lt;br/&gt;
     (bnc#1185859).&lt;/li&gt;
	&lt;li&gt;CVE-2020-24587: The 802.11 standard that underpins Wi-Fi Protected&lt;br/&gt;
     Access (WPA, WPA2, and WPA3) and Wired Equivalent Privacy (WEP) doesn&apos;t&lt;br/&gt;
     require that all fragments of a frame are encrypted under the same key.&lt;br/&gt;
     An adversary can abuse this to decrypt selected fragments when another&lt;br/&gt;
     device sends fragmented frames and the WEP, CCMP, or GCMP encryption key&lt;br/&gt;
     is periodically renewed (bnc#1185859 bnc#1185862).&lt;/li&gt;
	&lt;li&gt;CVE-2020-26147: The WEP, WPA, WPA2, and WPA3 implementations reassemble&lt;br/&gt;
     fragments, even though some of them were sent in plaintext. This&lt;br/&gt;
     vulnerability can be abused to inject packets and/or exfiltrate selected&lt;br/&gt;
     fragments when another device sends fragmented frames and the WEP, CCMP,&lt;br/&gt;
     or GCMP data-confidentiality protocol is used (bnc#1185859).&lt;/li&gt;
	&lt;li&gt;CVE-2020-24588: The 802.11 standard that underpins Wi-Fi Protected&lt;br/&gt;
     Access (WPA, WPA2, and WPA3) and Wired Equivalent Privacy (WEP) doesn&apos;t&lt;br/&gt;
     require that the A-MSDU flag in the plaintext QoS header field is&lt;br/&gt;
     authenticated. Against devices that support receiving non-SSP A-MSDU&lt;br/&gt;
     frames (which is mandatory as part of 802.11n), an adversary can abuse&lt;br/&gt;
     this to inject arbitrary network packets. (bnc#1185861)&lt;/li&gt;
	&lt;li&gt;CVE-2020-26145: An issue was discovered with Samsung Galaxy S3 i9305&lt;br/&gt;
     4.4.4 devices. The WEP, WPA, WPA2, and WPA3 implementations accept&lt;br/&gt;
     second (or subsequent) broadcast fragments even when sent in plaintext&lt;br/&gt;
     and process them as full unfragmented frames. An adversary can abuse&lt;br/&gt;
     this to inject arbitrary network packets independent of the network&lt;br/&gt;
     configuration. (bnc#1185860)&lt;/li&gt;
	&lt;li&gt;CVE-2020-26141: An issue was discovered in the ALFA driver for AWUS036H,&lt;br/&gt;
     where the Message Integrity Check (authenticity) of fragmented TKIP&lt;br/&gt;
     frames was not verified. An adversary can abuse this to inject and&lt;br/&gt;
     possibly decrypt packets in WPA or WPA2 networks that support the TKIP&lt;br/&gt;
     data-confidentiality protocol. (bnc#1185987)&lt;/li&gt;
&lt;/ul&gt;


&lt;p&gt;   The following non-security bugs were fixed:&lt;br/&gt;
   &lt;a href=&quot;https://lists.suse.com/pipermail/sle-security-updates/2021-June/008947.html&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;https://lists.suse.com/pipermail/sle-security-updates/2021-June/008947.html&lt;/a&gt;&lt;/p&gt;</description>
                <environment></environment>
        <key id="64783">LU-14774</key>
            <summary>kernel update [SLES15 SP2 5.3.18-24.67.3]</summary>
                <type id="4" iconUrl="https://jira.whamcloud.com/secure/viewavatar?size=xsmall&amp;avatarId=11310&amp;avatarType=issuetype">Improvement</type>
                                            <priority id="4" iconUrl="https://jira.whamcloud.com/images/icons/priorities/minor.svg">Minor</priority>
                        <status id="5" iconUrl="https://jira.whamcloud.com/images/icons/statuses/resolved.png" description="A resolution has been taken, and it is awaiting verification by reporter. From here issues are either reopened, or are closed.">Resolved</status>
                    <statusCategory id="3" key="done" colorName="success"/>
                                    <resolution id="2">Won&apos;t Fix</resolution>
                                        <assignee username="yujian">Jian Yu</assignee>
                                    <reporter username="yujian">Jian Yu</reporter>
                        <labels>
                    </labels>
                <created>Sat, 19 Jun 2021 00:02:42 +0000</created>
                <updated>Mon, 6 Sep 2021 02:11:52 +0000</updated>
                            <resolved>Mon, 6 Sep 2021 02:11:52 +0000</resolved>
                                                                        <due></due>
                            <votes>0</votes>
                                    <watches>2</watches>
                                                                            <comments>
                            <comment id="304966" author="gerrit" created="Sat, 19 Jun 2021 00:10:22 +0000"  >&lt;p&gt;Jian Yu (yujian@whamcloud.com) uploaded a new patch: &lt;a href=&quot;https://review.whamcloud.com/44036&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;https://review.whamcloud.com/44036&lt;/a&gt;&lt;br/&gt;
Subject: &lt;a href=&quot;https://jira.whamcloud.com/browse/LU-14774&quot; title=&quot;kernel update [SLES15 SP2 5.3.18-24.67.3]&quot; class=&quot;issue-link&quot; data-issue-key=&quot;LU-14774&quot;&gt;&lt;del&gt;LU-14774&lt;/del&gt;&lt;/a&gt; kernel: kernel update SLES15 SP2 &lt;span class=&quot;error&quot;&gt;&amp;#91;5.3.18-24.67.3&amp;#93;&lt;/span&gt;&lt;br/&gt;
Project: fs/lustre-release&lt;br/&gt;
Branch: master&lt;br/&gt;
Current Patch Set: 1&lt;br/&gt;
Commit: 9268d38b219be1ecf1aafeae18822097887969a3&lt;/p&gt;</comment>
                            <comment id="312134" author="yujian" created="Mon, 6 Sep 2021 02:11:52 +0000"  >&lt;p&gt;A new version is in &lt;a href=&quot;https://review.whamcloud.com/44849&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;https://review.whamcloud.com/44849&lt;/a&gt;&lt;/p&gt;</comment>
                    </comments>
                <issuelinks>
                            <issuelinktype id="10011">
                    <name>Related</name>
                                            <outwardlinks description="is related to ">
                                        <issuelink>
            <issuekey id="64449">LU-14722</issuekey>
        </issuelink>
                            </outwardlinks>
                                                                <inwardlinks description="is related to">
                                        <issuelink>
            <issuekey id="65318">LU-14873</issuekey>
        </issuelink>
                            </inwardlinks>
                                    </issuelinktype>
                    </issuelinks>
                <attachments>
                    </attachments>
                <subtasks>
                    </subtasks>
                <customfields>
                                                                                                                                                                                            <customfield id="customfield_10890" key="com.atlassian.jira.plugins.jira-development-integration-plugin:devsummary">
                        <customfieldname>Development</customfieldname>
                        <customfieldvalues>
                            
                        </customfieldvalues>
                    </customfield>
                                                                                                                                                                                                                                                                                                                                                        <customfield id="customfield_10390" key="com.pyxis.greenhopper.jira:gh-lexo-rank">
                        <customfieldname>Rank</customfieldname>
                        <customfieldvalues>
                            <customfieldvalue>1|i01xa7:</customfieldvalue>

                        </customfieldvalues>
                    </customfield>
                                                                <customfield id="customfield_10090" key="com.pyxis.greenhopper.jira:gh-global-rank">
                        <customfieldname>Rank (Obsolete)</customfieldname>
                        <customfieldvalues>
                            <customfieldvalue>9223372036854775807</customfieldvalue>
                        </customfieldvalues>
                    </customfield>
                                                                                                                                                                                                                                                                                                                                                                                                                </customfields>
    </item>
</channel>
</rss>