RHSA-2019:2900: Important: kernel security and bug fix update
The kernel packages contain the Linux kernel, the core of any Linux operating system.<br>Security Fix(es):<br><li> A buffer overflow flaw was found in the way Linux kernel's vhost functionality that translates virtqueue buffers to IOVs, logged the buffer descriptors during migration. A privileged guest user able to pass descriptors with invalid length to the host when migration is underway, could use this flaw to increase their privileges on the host. (CVE-2019-14835)</li> <li> kernel: hw: Spectre SWAPGS gadget vulnerability (CVE-2019-1125)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.<br>Bug Fix(es):<br><li> fs deadlock when a memory allocation waits on page writeback in NOFS context (BZ#1729105)</li> <li> fragmented packets timing out (BZ#1729410)</li> <li> kernel build: speed up debuginfo extraction (BZ#1731461)</li> <li> use "make -jN" for modulesinstall (BZ#1735080)</li> <li> shmem: consider shmmnt as a long-term mount (BZ#1737375)</li> <li> Backport TCP follow-up for small buffers (BZ#1739126)</li>
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2019:2900?
The severity of RHSA-2019:2900 is classified as important.
How do I fix RHSA-2019:2900?
To fix RHSA-2019:2900, you should update the kernel package to version 3.10.0-514.69.1.el7 or later.
What vulnerabilities are addressed in RHSA-2019:2900?
RHSA-2019:2900 addresses a buffer overflow flaw in the Linux kernel's vhost functionality.
Which systems are affected by RHSA-2019:2900?
RHSA-2019:2900 impacts systems running the specified versions of the kernel package and its derivatives on Red Hat Enterprise Linux.
Is there a workaround for RHSA-2019:2900?
There are no specific workarounds mentioned for RHSA-2019:2900; the recommended action is to apply the provided updates.