RHSA-2019:1973: Important: kernel-alt security and bug fix update
The kernel-alt packages provide the Linux kernel version 4.x.Security Fix(es): Kernel: vhostnet: infinite loop while receiving packets leads to DoS (CVE-2019-3900) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Bug Fix(es): Pegas1.1 - 7.5-alt s390x kernel oops in updatecfsrqhload (BZ#1557242) race of lockd/nfsd inetaddr notifiers with pointers change (BZ#1637541) lockd: possible double unregister of inetaddr notifiers (BZ#1637542) [Huawei AArch64 7.6 Bug] During the virtual machine migration process, NFS may trigger a system panic. (BZ#1671943) RHEL-Alt-7.6 - jit'd java code on power9 ppc64le experiences stack corruption (BZ#1707630) Users of kernel-alt are advised to upgrade to these updated packages, which fix these bugs.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2019:1973?
RHSA-2019:1973 has been classified as an important security vulnerability.
How do I fix RHSA-2019:1973?
To fix RHSA-2019:1973, upgrade to the kernel version 4.14.0-115.10.1.el7a or a later version provided by Red Hat.
What is the impact of RHSA-2019:1973?
RHSA-2019:1973 addresses a denial of service vulnerability caused by an infinite loop in the vhost_net module.
Which packages are affected by RHSA-2019:1973?
Affected packages include kernel-alt, kernel, kernel-debug, and other related kernel packages on Red Hat Enterprise Linux.
What is CVE-2019-3900 related to RHSA-2019:1973?
CVE-2019-3900 is the identifier for the specific vulnerability that leads to the denial of service in the vhost_net module.