First published: Tue May 08 2018(Updated: )
The kernel packages contain the Linux kernel, the core of any Linux operating system.<br>Security Fix(es):<br><li> Kernel: KVM: error in exception handling leads to wrong debug stack value (CVE-2018-1087)</li> <li> Kernel: error in exception handling leads to DoS (CVE-2018-8897)</li> <li> kernel: ptrace() incorrect error handling leads to corruption and DoS (CVE-2018-1000199)</li> For more details about the security issue(s), including the impact, a CVSS score, and other related information, refer to the CVE page(s) listed in the References section.<br>Red Hat would like to thank Andy Lutomirski for reporting CVE-2018-1087 and CVE-2018-1000199 and Nick Peterson (Everdox Tech LLC) and Andy Lutomirski for reporting CVE-2018-8897.
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/kernel | <3.10.0-327.66.3.el7 | 3.10.0-327.66.3.el7 |
redhat/kernel | <3.10.0-327.66.3.el7 | 3.10.0-327.66.3.el7 |
redhat/kernel-abi-whitelists | <3.10.0-327.66.3.el7 | 3.10.0-327.66.3.el7 |
redhat/kernel-debug | <3.10.0-327.66.3.el7 | 3.10.0-327.66.3.el7 |
redhat/kernel-debug-debuginfo | <3.10.0-327.66.3.el7 | 3.10.0-327.66.3.el7 |
redhat/kernel-debug-devel | <3.10.0-327.66.3.el7 | 3.10.0-327.66.3.el7 |
redhat/kernel-debuginfo | <3.10.0-327.66.3.el7 | 3.10.0-327.66.3.el7 |
redhat/kernel-devel | <3.10.0-327.66.3.el7 | 3.10.0-327.66.3.el7 |
redhat/kernel-doc | <3.10.0-327.66.3.el7 | 3.10.0-327.66.3.el7 |
redhat/kernel-headers | <3.10.0-327.66.3.el7 | 3.10.0-327.66.3.el7 |
redhat/kernel-tools | <3.10.0-327.66.3.el7 | 3.10.0-327.66.3.el7 |
redhat/kernel-tools-debuginfo | <3.10.0-327.66.3.el7 | 3.10.0-327.66.3.el7 |
redhat/kernel-tools-libs | <3.10.0-327.66.3.el7 | 3.10.0-327.66.3.el7 |
redhat/kernel-tools-libs-devel | <3.10.0-327.66.3.el7 | 3.10.0-327.66.3.el7 |
redhat/perf | <3.10.0-327.66.3.el7 | 3.10.0-327.66.3.el7 |
redhat/perf-debuginfo | <3.10.0-327.66.3.el7 | 3.10.0-327.66.3.el7 |
redhat/python-perf | <3.10.0-327.66.3.el7 | 3.10.0-327.66.3.el7 |
redhat/python-perf-debuginfo | <3.10.0-327.66.3.el7 | 3.10.0-327.66.3.el7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2018:1347 is classified as important due to vulnerabilities that could lead to denial of service.
To fix RHSA-2018:1347, you should update the kernel package to version 3.10.0-327.66.3.el7 or later.
RHSA-2018:1347 addresses CVE-2018-1087 and CVE-2018-8897.
RHSA-2018:1347 affects systems running the older versions of the kernel package prior to 3.10.0-327.66.3.el7.
More information about RHSA-2018:1347 can be found in Red Hat's advisory documentation.