REDHAT-BUG-2315178: Medium severity red hat kernel-devel vulnerability
In the Linux kernel, the following vulnerability has been resolved:
ELF: fix kernel.randomizevaspace double read
ELF loader uses "randomizevaspace" twice. It is sysctl and can change at any moment, so 2 loads could see 2 different values in theory with unpredictable consequences.
Issue exactly one load for consistent value across one exec.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2315178?
The severity of REDHAT-BUG-2315178 is categorized as a critical vulnerability affecting the Linux kernel.
How do I fix REDHAT-BUG-2315178?
To fix REDHAT-BUG-2315178, you should update your Linux kernel to the latest patched version provided by your distribution.
What are the potential risks associated with REDHAT-BUG-2315178?
The potential risks associated with REDHAT-BUG-2315178 include unpredictable behavior in the ELF loader, which could lead to security vulnerabilities.
Which versions of the Linux kernel are affected by REDHAT-BUG-2315178?
REDHAT-BUG-2315178 affects multiple versions of the Linux kernel, specifically those where the randomize_va_space feature is implemented incorrectly.
Is there a workaround for REDHAT-BUG-2315178?
There are currently no recommended workarounds for REDHAT-BUG-2315178; the best course of action is to apply the available updates.