First published: Mon Sep 23 2019(Updated: )
The kernel packages contain the Linux kernel, the core of any Linux operating system.<br>Security Fix(es):<br><li> A buffer overflow flaw was found in the way Linux kernel's vhost functionality that translates virtqueue buffers to IOVs, logged the buffer descriptors during migration. A privileged guest user able to pass descriptors with invalid length to the host when migration is underway, could use this flaw to increase their privileges on the host. (CVE-2019-14835)</li>
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/kernel | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/kernel | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/kernel-abi-whitelists | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/kernel-debug | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/kernel-debug-debuginfo | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/kernel-debug-devel | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/kernel-debuginfo | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/kernel-devel | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/kernel-doc | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/kernel-headers | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/kernel-tools | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/kernel-tools-debuginfo | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/kernel-tools-libs | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/kernel-tools-libs-devel | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/perf | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/perf-debuginfo | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/python-perf | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/python-perf-debuginfo | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/kernel | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/kernel-bootwrapper | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/kernel-debug | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/kernel-debug-debuginfo | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/kernel-debug-devel | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/kernel-debuginfo | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/kernel-debuginfo-common-ppc64le | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/kernel-devel | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/kernel-headers | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/kernel-tools | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/kernel-tools-debuginfo | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/kernel-tools-libs | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/kernel-tools-libs-devel | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/perf | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/perf-debuginfo | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/python-perf | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
redhat/python-perf-debuginfo | <3.10.0-693.59.1.el7 | 3.10.0-693.59.1.el7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2019:2867 is classified as moderate due to a buffer overflow vulnerability in the Linux kernel's vhost functionality.
RHSA-2019:2867 affects kernel versions prior to 3.10.0-693.59.1.el7.
To fix RHSA-2019:2867, update the kernel and related packages to version 3.10.0-693.59.1.el7 or later.
Not addressing RHSA-2019:2867 can lead to potential exploitation that might compromise system stability and security.
The affected packages include kernel, kernel-debug, kernel-tools, and other related kernel packages across various architectures.