First published: Tue May 08 2018(Updated: )
The kernel packages contain the Linux kernel, the core of any Linux operating system.<br>Security Fix(es):<br><li> Kernel: KVM: error in exception handling leads to wrong debug stack value (CVE-2018-1087)</li> <li> Kernel: error in exception handling leads to DoS (CVE-2018-8897)</li> <li> Kernel: ipsec: xfrm: use-after-free leading to potential privilege escalation (CVE-2017-16939)</li> <li> kernel: Out-of-bounds write via userland offsets in ebt_entry struct in netfilter/ebtables.c (CVE-2018-1068)</li> <li> kernel: ptrace() incorrect error handling leads to corruption and DoS (CVE-2018-1000199)</li> <li> kernel: guest kernel crash during core dump on POWER9 host (CVE-2018-1091)</li> For more details about the security issue(s), including the impact, a CVSS score, and other related information, refer to the CVE page(s) listed in the References section.<br>Red Hat would like to thank Andy Lutomirski for reporting CVE-2018-1087 and CVE-2018-1000199 and Nick Peterson (Everdox Tech LLC) and Andy Lutomirski for reporting CVE-2018-8897.<br>Bug Fix(es):<br>These updated kernel packages include also numerous bug fixes. Space precludes documenting all of these bug fixes in this advisory. See the bug fix descriptions in the related Knowledge Article: <a href="https://access.redhat.com/articles/3431641" target="_blank">https://access.redhat.com/articles/3431641</a>
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/kernel | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-abi-whitelists | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-debug | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-debug-debuginfo | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-debug-devel | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-debuginfo | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-devel | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-doc | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-headers | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-tools | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-tools-debuginfo | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-tools-libs | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-tools-libs-devel | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/perf | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/perf-debuginfo | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/python-perf | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/python-perf-debuginfo | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-debug | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-debug-debuginfo | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-debug-devel | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-debuginfo | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-debuginfo-common-s390x | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-devel | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-headers | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-kdump | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-kdump-debuginfo | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-kdump-devel | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/perf | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/perf-debuginfo | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/python-perf | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/python-perf-debuginfo | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-bootwrapper | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-debuginfo-common-ppc64 | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-tools | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-tools-debuginfo | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-tools-libs | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-tools-libs-devel | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-bootwrapper | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-debug | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-debug-debuginfo | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-debug-devel | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-debuginfo | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-debuginfo-common-ppc64le | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-devel | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-headers | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-tools | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-tools-debuginfo | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-tools-libs | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/kernel-tools-libs-devel | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/perf | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/perf-debuginfo | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/python-perf | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
redhat/python-perf-debuginfo | <3.10.0-862.2.3.el7 | 3.10.0-862.2.3.el7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.