[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

253164

 
 

909

 
 

197077

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS2LIVEPATCH-2020-024 --- kernel-livepatch-4.14.177-139.254

ID: oval:org.secpod.oval:def:1700482Date: (C)2020-11-24   (M)2024-05-22
Class: PATCHFamily: unix




A flaw was found in the Linux kernel"s implementation of some networking protocols in IPsec, such as VXLAN and GENEVE tunnels over IPv6. When an encrypted tunnel is created between two hosts, the kernel isn"t correctly routing tunneled data over the encrypted link; rather sending the data unencrypted. This would allow anyone in between the two endpoints to read the traffic unencrypted. The main threat from this vulnerability is to data confidentiality

Platform:
Amazon Linux 2
Product:
kernel-livepatch-4.14.177-139.254
Reference:
ALAS2LIVEPATCH-2020-024
CVE-2020-1749
CVE    1
CVE-2020-1749

© SecPod Technologies