RHSA-2019:2869: Important: kernel security and bug fix update
The kernel packages contain the Linux kernel, the core of any Linux operating system.Security Fix(es): A buffer overflow flaw was found in the way Linux kernel's vhost functionality that translates virtqueue buffers to IOVs, logged the buffer descriptors during migration. A privileged guest user able to pass descriptors with invalid length to the host when migration is underway, could use this flaw to increase their privileges on the host. (CVE-2019-14835) Bug Fix(es): fragmented packets timing out (BZ#1741131) Backport TCP follow-up for small buffers (BZ#1741143)
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2019:2869?
The severity of RHSA-2019:2869 is classified as important.
How do I fix RHSA-2019:2869?
To fix RHSA-2019:2869, update the kernel packages to version 2.6.32-504.81.2.el6.
What does RHSA-2019:2869 vulnerability affect?
RHSA-2019:2869 affects several kernel packages including kernel, kernel-debug, kernel-devel, and others listed for Red Hat Enterprise Linux 6.
What type of vulnerability is associated with RHSA-2019:2869?
RHSA-2019:2869 is associated with a buffer overflow flaw in the Linux kernel's vhost functionality.
Is RHSA-2019:2869 related to virtualization?
Yes, RHSA-2019:2869 relates to the virtualization component of the Linux kernel, specifically the vhost feature that manages virtual machine traffic.