RHSA-2010:0020: Important: kernel security update
The kernel packages contain the Linux kernel, the core of any Linuxoperating system.This update fixes the following security issues: a flaw was found in each of the following Intel PRO/1000 Linux drivers in the Linux kernel: e1000 and e1000e. A remote attacker using packets largerthan the MTU could bypass the existing fragment check, resulting inpartial, invalid frames being passed to the network stack. These flawscould also possibly be used to trigger a remote denial of service.(CVE-2009-4536, CVE-2009-4538, Important) a flaw was found in the Realtek r8169 Ethernet driver in the Linux kernel. Receiving overly-long frames with network cards supported by thisdriver could possibly result in a remote denial of service. (CVE-2009-4537,Important)Users should upgrade to these updated packages, which contain backportedpatches to correct these issues. The system must be rebooted for thisupdate to take effect.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2010:0020?
The severity of RHSA-2010:0020 is classified as important due to vulnerabilities in the Intel PRO/1000 drivers.
How do I fix RHSA-2010:0020?
To fix RHSA-2010:0020, you should update your kernel packages to the latest version provided by your distribution.
What vulnerabilities are addressed in RHSA-2010:0020?
RHSA-2010:0020 addresses vulnerabilities in the e1000 and e1000e Intel PRO/1000 Linux drivers that could allow remote attackers to execute arbitrary code.
Which systems are affected by RHSA-2010:0020?
RHSA-2010:0020 affects systems running vulnerable versions of the Linux kernel that utilize the e1000 and e1000e drivers.
How can I determine if my system is vulnerable to RHSA-2010:0020?
You can determine if your system is vulnerable to RHSA-2010:0020 by checking your kernel version and the use of the affected Intel drivers.