RHSA-2021:1267: Important: kernel security and bug fix update
The kernel packages contain the Linux kernel, the core of any Linux operating system.Security Fix(es): kernel: out-of-bounds read in libiscsi module (CVE-2021-27364) kernel: heap buffer overflow in the iSCSI subsystem (CVE-2021-27365) kernel: performance counters race condition use-after-free (CVE-2020-14351) kernel: iscsi: unrestricted access to sessions and handles (CVE-2021-27363) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Bug Fix(es): Enable CI and changelog for GitLab workflow (BZ#1930932)
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2021:1267?
RHSA-2021:1267 is rated as a moderate severity vulnerability affecting the Linux kernel.
How do I fix RHSA-2021:1267?
To fix RHSA-2021:1267, update your kernel packages to version 3.10.0-693.84.1.el7 or newer.
What vulnerabilities are addressed in RHSA-2021:1267?
RHSA-2021:1267 addresses CVE-2021-27364 and CVE-2021-27365, which are related to out-of-bounds read and heap buffer overflow in the iSCSI subsystem.
Which systems are affected by RHSA-2021:1267?
RHSA-2021:1267 affects systems running the kernel version up to 3.10.0-693.84.1.el7, including various architectures like x86_64 and ppc64le.
Is RHSA-2021:1267 applicable to all Linux distributions?
No, RHSA-2021:1267 specifically applies to Red Hat-based systems using the specified kernel version.