REDHAT-BUG-1322755: Low severity red hat linux vulnerability
It was found that EINJ, error injection mechanism, is allowed even if securelevel, a prevention from userspace performing actions that undermine trust in the platform, is enabled. This can have undesirable side-effects, such as causing the platform to mark hardware as needing replacement.
Product bug:
https://bugzilla.redhat.com/showbug.cgi?id=1321639
Upstream patch:
https://github.com/mjg59/linux/commit/d7a6be58edc01b1c66ecd8fcc91236bfbce0a420
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1322755?
The severity of REDHAT-BUG-1322755 is significant due to the potential for system instability and hardware misreporting.
How do I fix REDHAT-BUG-1322755?
To fix REDHAT-BUG-1322755, ensure that the EINJ error injection mechanism is disabled when securelevel is enabled.
What platforms are affected by REDHAT-BUG-1322755?
REDHAT-BUG-1322755 affects Red Hat Linux environments where the securelevel feature is in use.
What are the potential impacts of REDHAT-BUG-1322755?
The potential impacts of REDHAT-BUG-1322755 include erroneous hardware replacement markings and compromised system trust.
Is there a workaround for REDHAT-BUG-1322755?
A temporary workaround for REDHAT-BUG-1322755 is to carefully manage securelevel settings and disable EINJ if necessary.