The SUSE Linux Enterprise 15 SP2 Azure kernel was updated to receive various security and bugfixes.
The following security bugs were fixed:
CVE-2020-10781: Fixed a denial of service issue in the ZRAM implementation (bnc#1173074).
CVE-2020-0305: In cdevget of chardev.c, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation (bnc#1174462).
CVE-2020-10135: Legacy pairing and secure-connections pairing authentication in bluetooth may have allowed an unauthenticated user to complete authentication without pairing credentials via adjacent access. An unauthenticated, adjacent attacker could impersonate a Bluetooth BR/EDR master or slave to pair with a previously paired remote device to successfully complete the authentication procedure without knowing the link key (bnc#1171988).
CVE-2020-14331: Fixed a buffer over write in vgaconscrollbackupdate() (bnc#1174205).
The following non-security bugs were fixed:
ACPICA: Dispatcher: add status checks (git-fixes).
ACPI/IORT: Fix PMCG node single ID mapping handling (git-fixes).
ACPI: video: Use native backlight on Acer Aspire 5783z (git-fixes).
ACPI: video: Use native backlight on Acer TravelMate 5735Z (git-fixes).
ALSA: hda: Intel: add missing PCI IDs for ICL-H, TGL-H and EKL (jsc#SLE-13261).
ALSA: hda/realtek - change to suitable link model for ASUS platform (git-fixes).
ALSA: hda/realtek: Enable headset mic of Acer TravelMate B311R-31 with ALC256 (git-fixes).
ALSA: hda/realtek: enable headset mic of ASUS ROG Zephyrus G14(G401) series with ALC289 (git-fixes).
ALSA: hda/realtek - Enable Speaker for ASUS UX533 and UX534 (git-fixes).
ALSA: hda/realtek - Enable Speaker for ASUS UX563 (git-fixes).
ALSA: hda/realtek: Fixed ALC298 sound bug by adding quirk for Samsung Notebook Pen S (git-fixes).
ALSA: hda/realtek - fixup for yet another Intel reference board (git-fixes).
ALSA: info: Drop WARN_ON() from buffer NULL sanity check (git-fixes).
ALSA: line6: Perform sanity check for each URB creation (git-fixes).
ALSA: line6: Sync the pending work cancel at disconnection (git-fixes).
ALSA: usb-audio: Add registration quirk for Kingston HyperX Cloud Flight S (git-fixes).
ALSA: usb-audio: Fix race against the error recovery URB submission (git-fixes).
apparmor: ensure that dfa state tables have entries (git-fixes).
apparmor: fix introspection of of task mode for unconfined tasks (git-fixes).
apparmor: Fix memory leak of profile proxy (git-fixes).
apparmor: Fix use-after-free in aaauditrule_init (git-fixes).