RHSA-2010:0111: Important: kernel security update
The kernel packages contain the Linux kernel, the core of any Linuxoperating system.This update fixes the following security issues: a flaw was found in each of the following Intel PRO/1000 Linux drivers in the Linux kernel: e1000 and e1000e. A remote attacker using packets largerthan the MTU could bypass the existing fragment check, resulting inpartial, invalid frames being passed to the network stack. These flawscould also possibly be used to trigger a remote denial of service.(CVE-2009-4536, CVE-2009-4538, Important) a flaw was found in the Realtek r8169 Ethernet driver in the Linux kernel. Receiving overly-long frames with a certain revision of the networkcards supported by this driver could possibly result in a remote denial ofservice. (CVE-2009-4537, Important)Users should upgrade to these updated packages, which contain backportedpatches to correct these issues. The system must be rebooted for thisupdate to take effect.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2010:0111?
The severity of RHSA-2010:0111 is rated as critical due to the potential for remote code execution.
How do I fix RHSA-2010:0111?
To fix RHSA-2010:0111, update your Linux kernel packages to the latest version provided by your distribution.
What vulnerabilities are addressed in RHSA-2010:0111?
RHSA-2010:0111 addresses vulnerabilities in the Intel PRO/1000 Linux drivers e1000 and e1000e.
Who is affected by RHSA-2010:0111?
All users utilizing affected Intel PRO/1000 network drivers in their Linux kernel are at risk from RHSA-2010:0111.
Is RHSA-2010:0111 a remote attack vulnerability?
Yes, RHSA-2010:0111 includes vulnerabilities that could be exploited by remote attackers.