RHSA-2019:2863: Important: kernel security update
The kernel packages contain the Linux kernel, the core of any Linux operating system.Security Fix(es): A buffer overflow flaw was found in the way Linux kernel's vhost functionality that translates virtqueue buffers to IOVs, logged the buffer descriptors during migration. A privileged guest user able to pass descriptors with invalid length to the host when migration is underway, could use this flaw to increase their privileges on the host. (CVE-2019-14835)
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2019:2863?
The severity of RHSA-2019:2863 is categorized as critical due to the buffer overflow vulnerability in the Linux kernel.
How do I fix RHSA-2019:2863?
To fix RHSA-2019:2863, update the kernel package to version 2.6.32-754.23.1.el6 or later.
What systems are affected by RHSA-2019:2863?
RHSA-2019:2863 affects Red Hat Enterprise Linux version 6 systems running the kernel, kernel-debug, and other related packages.
What type of vulnerability does RHSA-2019:2863 describe?
RHSA-2019:2863 describes a buffer overflow vulnerability related to the Linux kernel's vhost functionality.
What are the potential consequences of not addressing RHSA-2019:2863?
Failure to address RHSA-2019:2863 could lead to potential system crashes, data leakage, or unauthorized access.