RHSA-2021:1071: Important: kernel security and bug fix update
The kernel packages contain the Linux kernel, the core of any Linux operating system.Security Fix(es): kernel: out-of-bounds read in libiscsi module (CVE-2021-27364) kernel: heap buffer overflow in the iSCSI subsystem (CVE-2021-27365) kernel: iscsi: unrestricted access to sessions and handles (CVE-2021-27363) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Bug Fix(es): Customer testing eMMC sees and intermittent boot problem on 7.8+, was not seen on 7.3 (BZ#1918916) tcm loopback driver causes double-start of scsi command when work is delayed (BZ#1925652) [Azure][RHEL-7]Mellanox Patches To Prevent Kernel Hang In MLX4 (BZ#1925691) A patch from upstream c365c292d059 causes us to end up leaving rtnrboosted in an inconsistent state, which causes a hard lockup. (BZ#1928082) [RHEL7.9.z] Add fix to update sndwl1 in bulk receiver fast path (BZ#1929804)
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2021:1071?
The severity of RHSA-2021:1071 is classified as Important.
How do I fix RHSA-2021:1071?
To fix RHSA-2021:1071, update all affected kernel packages to version 3.10.0-1160.24.1.el7 or later.
Which CVE IDs are associated with RHSA-2021:1071?
RHSA-2021:1071 addresses CVE-2021-27364 and CVE-2021-27365.
What packages are affected by RHSA-2021:1071?
Affected packages include kernel, bpftool, and kernel-debug among others.
Is a reboot required after applying RHSA-2021:1071?
Yes, a reboot is required after applying the updates for RHSA-2021:1071 to take effect.