MGASA-2015-0435

Source
https://advisories.mageia.org/MGASA-2015-0435.html
Import Source
https://advisories.mageia.org/MGASA-2015-0435.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2015-0435
Related
Published
2015-11-07T20:11:27Z
Modified
2022-02-17T18:21:47Z
Summary
Updated kernel packages fixes security vulnerability
Details

This kernel update is based on the upstream 4.1.12 longterm kernel and fixes at least the following security issue:

Moein Ghasemzadeh discovered that the USB WhiteHEAT serial driver contained hardcoded attributes about the USB devices. An attacker could construct a fake WhiteHEAT USB device that, when inserted, causes a denial of service (system crash) (CVE-2015-5257).

It also fixes various upstream bugs, for more info see the referenced changelogs.

Other fixes in this update: * improve ath10k (QCA99X0, QCA988X, QCA6174) support (mga#16915) * silence a harmless warning on 32bit non-dt hardware (mga#17010) * fix regression with AlpsPS/2 ALPS DualPoint TouchPad of a Dell Latitude D600 (mga#17034) * kernel-firmware-nonfee: - Add firmware for mwlwifi - add firmware for QCA99X0 hw2.0, QCA988X hw2.0, QCA6174 hw2.1/3.0 (ath10k) - brcmfmac: firmware refresh for BCM43602 PCIE devices * iwlwifi-agn-ucode: - Add firmware for Intel Bluetooth 7265 (D1) - Update firmware for Intel Bluetooth 7265 (C0/D0) - Update firmware for Intel Bluetooth 7260 (B3/B4/B5/B6)

References
Credits

Affected packages

Mageia:5 / kernel

Package

Name
kernel
Purl
pkg:rpm/mageia/kernel?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.1.12-1.mga5

Ecosystem specific

{
    "section": "core"
}

Mageia:5 / kernel-userspace-headers

Package

Name
kernel-userspace-headers
Purl
pkg:rpm/mageia/kernel-userspace-headers?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.1.12-1.mga5

Ecosystem specific

{
    "section": "core"
}

Mageia:5 / kmod-vboxadditions

Package

Name
kmod-vboxadditions
Purl
pkg:rpm/mageia/kmod-vboxadditions?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.0.8-2.mga5

Ecosystem specific

{
    "section": "core"
}

Mageia:5 / kmod-virtualbox

Package

Name
kmod-virtualbox
Purl
pkg:rpm/mageia/kmod-virtualbox?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.0.8-2.mga5

Ecosystem specific

{
    "section": "core"
}

Mageia:5 / kmod-xtables-addons

Package

Name
kmod-xtables-addons
Purl
pkg:rpm/mageia/kmod-xtables-addons?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.7-5.mga5

Ecosystem specific

{
    "section": "core"
}

Mageia:5 / kmod-broadcom-wl

Package

Name
kmod-broadcom-wl
Purl
pkg:rpm/mageia/kmod-broadcom-wl?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.30.223.271-2.mga5.nonfree

Ecosystem specific

{
    "section": "nonfree"
}

Mageia:5 / kmod-fglrx

Package

Name
kmod-fglrx
Purl
pkg:rpm/mageia/kmod-fglrx?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
15.200.1046-6.mga5.nonfree

Ecosystem specific

{
    "section": "nonfree"
}

Mageia:5 / kmod-nvidia304

Package

Name
kmod-nvidia304
Purl
pkg:rpm/mageia/kmod-nvidia304?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
304.128-2.mga5.nonfree

Ecosystem specific

{
    "section": "nonfree"
}

Mageia:5 / kmod-nvidia340

Package

Name
kmod-nvidia340
Purl
pkg:rpm/mageia/kmod-nvidia340?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
340.93-2.mga5.nonfree

Ecosystem specific

{
    "section": "nonfree"
}

Mageia:5 / kmod-nvidia-current

Package

Name
kmod-nvidia-current
Purl
pkg:rpm/mageia/kmod-nvidia-current?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
346.96-2.mga5.nonfree

Ecosystem specific

{
    "section": "nonfree"
}

Mageia:5 / kernel-firmware-nonfree

Package

Name
kernel-firmware-nonfree
Purl
pkg:rpm/mageia/kernel-firmware-nonfree?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
20151018-1.mga5.nonfree

Ecosystem specific

{
    "section": "nonfree"
}