RHSA-2009:1457: Important: kernel security update
The kernel packages contain the Linux kernel, the core of any Linuxoperating system.This update fixes the following security issues: Michael Tokarev reported a flaw in the Realtek r8169 Ethernet driver in the Linux kernel. This driver allowed interfaces using this driver toreceive frames larger than what could be handled. This could lead to aremote denial of service or code execution. (CVE-2009-1389, Important) Tavis Ormandy and Julien Tinnes of the Google Security Team reported a flaw in the SOCKOPSWRAP macro in the Linux kernel. This macro did notinitialize the sendpage operation in the protoops structure correctly. Alocal, unprivileged user could use this flaw to cause a local denial ofservice or escalate their privileges. (CVE-2009-2692, Important) Tavis Ormandy and Julien Tinnes of the Google Security Team reported a flaw in the udpsendmsg() implementation in the Linux kernel when using theMSGMORE flag on UDP sockets. A local, unprivileged user could use thisflaw to cause a local denial of service or escalate their privileges.(CVE-2009-2698, Important)Users should upgrade to these updated packages, which contain backportedpatches to correct these issues. The system must be rebooted for thisupdate to take effect.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2009:1457?
The severity of RHSA-2009:1457 is classified as important due to the potential impact on system security.
How do I fix RHSA-2009:1457?
To fix RHSA-2009:1457, you should update the kernel packages to the latest version provided by your distribution.
Which systems are affected by RHSA-2009:1457?
RHSA-2009:1457 affects systems running versions of the Linux kernel that include the Realtek r8169 Ethernet driver.
What issues does RHSA-2009:1457 address?
RHSA-2009:1457 addresses security vulnerabilities in the Realtek r8169 Ethernet driver that could allow unauthorized access.
Is RHSA-2009:1457 critical to security?
Yes, RHSA-2009:1457 is critical to security as it mitigates risks posed by vulnerabilities in the kernel networking components.