RHSA-2019:0717: Important: kernel security and bug fix update
The kernel packages contain the Linux kernel, the core of any Linux operating system.Security Fix(es): kernel: Missing check in fs/inode.c:inodeinitowner() does not clear SGID bit on non-directories for non-members (CVE-2018-13405) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Bug Fix(es): sched/sysctl: Check user input value of sysctlschedtimeavg (BZ#1579128) unable to handle kernel NULL pointer dereference at 000000000000005d in tcpenterfrto+0x102 (BZ#1585892) qla2xxx: Mask Off Scope bits for Retry delay timer in the driver (BZ#1588133) [PATCH] perf: Fix a race between ringbufferdetach() and ringbufferwakeup() (BZ#1589340) RHEL6.10 - kernel: improve spectre mitigation for s390x (BZ#1625381) kernel panic due to NULL pointer dereference in wakeupcommon through perfeventwakeup (BZ#1627672) After upgrading from rhel 6.9 to rhel 6.10, files in a cifs share can't be read (BZ#1636484) Retpoline impact on vdso gettimeofday performance (BZ#1638552) [RHEL 6.10] 32-bit kernel-2.6.32-754.3.5 registers the swap of 4k size only (BZ#1670328)
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2019:0717?
The severity of RHSA-2019:0717 is classified as important.
How do I fix RHSA-2019:0717?
To fix RHSA-2019:0717, update the kernel packages to version 2.6.32-754.12.1.el6 or later.
What vulnerability does RHSA-2019:0717 address?
RHSA-2019:0717 addresses a vulnerability where the SGID bit is not cleared on non-directories for non-members, identified as CVE-2018-13405.
Which systems are affected by RHSA-2019:0717?
RHSA-2019:0717 affects systems running Linux kernel version prior to 2.6.32-754.12.1.el6.
Is a reboot required after applying the fix for RHSA-2019:0717?
Yes, a reboot is typically required to ensure that the updated kernel is loaded and the vulnerabilities are mitigated.